VDB
CVE-2023-46752
CVE-2023-46752
PUBLISHED
In FRRouting existieren mehrere Schwachstellen. Die Ursache ist eine unsachgemäße Behandlung von speziell bearbeiteten BGP UPDATE-Nachrichten oder MP_REACH_NLRI-Daten. Ein entfernter, anonymer Angreifer kann diese Schwachstelle ausnutzen, um einen Denial of Servie zu verursachen.
EPSS 0.14% · 34.1th percentile
Risk Scores
EPSS Score
0.14%
34.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| FRRouting Project | FRRouting Project FRRouting <=9.0.1 | |
| SUSE | SUSE Linux | |
| Red Hat | Red Hat Enterprise Linux | |
| Ubuntu | Ubuntu Linux | |
| Debian | Debian Linux |
Exploit Intelligence
Timeline
- Oct 25, 2023 Fix PR Merged
- Oct 25, 2023 CVE Published
- Oct 26, 2023 EPSS Score
- Oct 26, 2023 PoC Published
- Nov 26, 2023 EPSS Score
- Dec 27, 2023 EPSS Score
- Jan 27, 2024 EPSS Score
- Feb 27, 2024 EPSS Score
- Mar 28, 2024 EPSS Score
- Apr 28, 2024 EPSS Score
- May 29, 2024 EPSS Score
- Jul 30, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-2748.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-2748 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2023-46753 advisory
- https://nvd.nist.gov/vuln/detail/CVE-2023-46752 advisory
- https://ubuntu.com/security/notices/USN-6481-1 advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-November/017060.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-November/017127.html advisory
- https://lists.debian.org/debian-lts-announce/2024/04/msg00019.html advisory
- https://access.redhat.com/errata/RHSA-2024:2156 advisory
- https://access.redhat.com/errata/RHSA-2024:2981 advisory
- https://ubuntu.com/security/notices/USN-6807-1 advisory
- https://lists.debian.org/debian-lts-announce/2024/09/msg00007.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/BBQ2F6B52UDKPMMML6F24O4RGXPC3B6U/ advisory