CVE-2024-31948
MEDIUMDescription
In FRRouting (FRR) through 9.1, an attacker using a malformed Prefix SID attribute in a BGP UPDATE packet can cause the bgpd daemon to crash.
Is your site exposed to CVE-2024-31948?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| frrouting | frrouting |
References
Advisories & Patches
Other References
Frequently Asked Questions
What is CVE-2024-31948? +
How severe is CVE-2024-31948? +
What products are affected by CVE-2024-31948? +
How do I check if I'm vulnerable to CVE-2024-31948? +
Related Vulnerabilities
Synapse is an open source Matrix homeserver implementation. Lack of validation for device keys in Synapse before 1.138.3 and in …
A denial-of-service vulnerability exists in the WebSocket API due to insufficient validation and handling of JSON-based requests. A low-privileged authenticated …
`_nx_icmpv6_validate_options()` scans the option area with `while (length > 2)` (`common/src/nx_icmpv6_validate_options.c:79`). An area whose size leaves a one- or two-byte …
Improper Validation of Specified Type of Input vulnerability in OpenText™ Content Management (Extended ECM) allows Parameter Injection. A bad actor …
Improper Validation of Specified Type of Input vulnerability in ash-project ash lets an attacker confuse the stored type tag of …
A security issue exists due to improper handling of CIP Class 32’s request when a module is inhibited on the …