← Back to CVE Index

CVE-2022-36440

Disclosed 2023-04-03

Description

A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can maliciously construct BGP open packets and send them to BGP peers running frr-bgpd, resulting in DoS.

Severity

High

Affected FRR Versions

  • < 8.4

Versions prior to 8.4 are end-of-life and no longer receive security updates.

References

URLSource
https://github.com/FRRouting/frr/commit/3e46b43e3788f0f87bae56a86b54d412b4710286 GitHub

Git Fixes

Raw Data