Home

Description

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

PUBLISHED Reserved 2025-09-26 | Published 2025-10-28 | Updated 2025-10-28 | Assigner mitre

References

github.com/FRRouting/frr/pull/19480

github.com/FRRouting/frr/issues/19471

github.com/...mmits/fdd957408605d4a1766225630aafc7e6b7c3daf3

github.com/s1awwhy/BugList/blob/main/CVE-2025-61104.md

cve.org (CVE-2025-61104)

nvd.nist.gov (CVE-2025-61104)

Download JSON