CVE-2022-43681
Last modified
CVE-2022-43681 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message that ends with the option length octet (or the option length word, in case of an extended OPEN message), the FRR code reads of out of the bounds of the packet, throwing a SIGABRT signal and exiting. EPSS estimates a 2.11% chance of exploitation in the next 30 days.
Description
An out-of-bounds read exists in the BGP daemon of FRRouting FRR through 8.4. When sending a malformed BGP OPEN message that ends with the option length octet (or the option length word, in case of an extended OPEN message), the FRR code reads of out of the bounds of the packet, throwing a SIGABRT signal and exiting. This results in a bgpd daemon restart, causing a Denial-of-Service condition.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Frrouting | Frrouting | <= 8.4 |
| Debian | Debian Linux | 10.0 |
| Debian | Debian Linux | 11.0 |
| Debian | Debian Linux | 12.0 |
References
- https://forescout.comThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2023/09/msg00020.htmlMailing List, Third Party Advisory
- https://www.debian.org/security/2023/dsa-5495Third Party Advisory
- https://forescout.comThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2023/09/msg00020.htmlMailing List, Third Party Advisory
- https://www.debian.org/security/2023/dsa-5495Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-43681?
How severe is CVE-2022-43681?
How do I fix CVE-2022-43681?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2022
- CVE-2022-43673Wire through 3.22.3993 on Windows advertises deletion of sen…4.7
- CVE-2022-43675An issue was discovered in NOKIA NFM-T R19.9. Reflected XSS …6.1
- CVE-2022-43677In free5GC 3.2.1, a malformed NGAP message can crash the AMF…5.5
- CVE-2022-43679The Docker image of ownCloud Server through 10.11 contains a…5.3
- CVE-2022-4368The WP CSV WordPress plugin through 1.8.0.0 does not sanitiz…6.1
- CVE-2022-43680In libexpat through 2.4.9, there is a use-after free caused …7.5
- CVE-2022-43684ServiceNow has released patches and an upgrade that address …6.5
- CVE-2022-43685CKAN through 2.9.6 account takeovers by unauthenticated user…8.8
- CVE-2022-43686In Concrete CMS (formerly concrete5) below 8.5.10 and betwee…6.5
- CVE-2022-43687Concrete CMS (formerly concrete5) below 8.5.10 and between 9…5.4
- CVE-2022-43688Concrete CMS (formerly concrete5) below 8.5.10 and between 9…4.8
- CVE-2022-43689Concrete CMS (formerly concrete5) below 8.5.10 and between 9…5.3
Are you affected by CVE-2022-43681?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
