Home

Description

An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component.

PUBLISHED Reserved 2026-04-06 | Published 2026-05-01 | Updated 2026-05-01 | Assigner mitre

References

github.com/...ommit/0e6882bc72c0278988a47b2f0f73b7a91099a25c

cve.org (CVE-2026-37457)

nvd.nist.gov (CVE-2026-37457)

Download JSON