← Back to CVE Index

CVE-2022-26128

Disclosed 2022-03-03

Description

A buffer overflow vulnerability exists in FRRouting through 8.1.0 due to a wrong check on the input packet length in the babel_packet_examin function in babeld/message.c.

Weakness Enumeration

CWE-IDName
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

Affected FRR Versions

  • through 8.1.0

Versions prior to 8.4 are end-of-life and no longer receive security updates.

References

URLSource
https://github.com/FRRouting/frr/issues/10502 GitHub
https://lists.debian.org/debian-lts-announce/2024/04/msg00019.html Debian

Git Fixes

Raw Data