CNNVD-202510-3492 Information

CNNVD ID

CNNVD-202510-3492

CVE-2025-61099

  • CNNVD Published: 2025-10-27

Description (Chinese)

FRRouting FRR是一套对各种IPV4和IPV6路由协议进行实现和管理的软件。 FRRouting FRR 10.4.1及之前版本存在安全漏洞,该漏洞源于ospf_opaque.c中的opaque_info_detail函数存在空指针取消引用,可能导致拒绝服务攻击。

Description (English)

FRRRouting FRR is a software package for the realization and management of various IPV4 and IPV6 route protocols. FRRouting FRR 10.4.1 and previous versions have a security loophole, which stems from the empty pointer cancellation of the Opaque info detail function in ospf opaque.c, which may lead to a denial of service attacks.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-10-27

Last Modified

2026-02-24

References

https://github.com/FRRouting/frr/issues/19471 https://github.com/FRRouting/frr/pull/19480 https://github.com/FRRouting/frr/pull/19480/commits/0042fbe8ca5aba866b4f0d166e54066bba5ab14e https://github.com/s1awwhy/BugList/blob/main/CVE-2025-61099.md

Share on: