ELSA-2024-0130

ELSA-2024-0130 - frr security update

Type:SECURITY
Impact:MODERATE
Release Date:2024-01-12

Description


[7.5.1-13.3]
- Resolves: RHEL-15916 - Flowspec overflow in bgpd/bgp_flowspec.c
- Resolves: RHEL-15919 - Out of bounds read in bgpd/bgp_label.c
- Resolves: RHEL-15869 - crash from specially crafted MP_UNREACH_NLRI-containing BGP UPDATE message
- Resolves: RHEL-15868 - crash from malformed EOR-containing BGP UPDATE message


Related CVEs


CVE-2023-38407
CVE-2023-47234
CVE-2023-47235
CVE-2023-38406

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) frr-7.5.1-13.el8_9.3.src.rpm4cbef751aab62211a91ed915683e10ea67b4ee8504509218c136fbe1088fbfb6-ol8_aarch64_appstream
frr-7.5.1-13.el8_9.3.aarch64.rpm22b33269e17f0aac43d8e2e104781586d78402df7de7226d5b318ef73d8bb3e5-ol8_aarch64_appstream
frr-selinux-7.5.1-13.el8_9.3.noarch.rpma46fb0631f4b58e5ae780d2ddcb1640441e7da1ed24451dbd62b431246403025-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) frr-7.5.1-13.el8_9.3.src.rpm4cbef751aab62211a91ed915683e10ea67b4ee8504509218c136fbe1088fbfb6-ol8_x86_64_appstream
frr-7.5.1-13.el8_9.3.x86_64.rpm45f7124de25c48b314481f90a30aaf96845cb3df8d70d71dd686e2805982c78e-ol8_x86_64_appstream
frr-selinux-7.5.1-13.el8_9.3.noarch.rpma46fb0631f4b58e5ae780d2ddcb1640441e7da1ed24451dbd62b431246403025-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete