CVE-2025-43972 Information
Apr 21, 2025
cve
Description
An issue was discovered in GoBGP before 3.35.0. An attacker can cause a crash in the pkg/packet/bgp/bgp.go flowspec parser by sending fewer than 20 bytes in a certain context.
Reference
https://github.com/osrg/gobgp/commit/ca7383f450f7b296c5389feceef2467de5ab6e5a https://github.com/osrg/gobgp/compare/v3.34.0…v3.35.0
Share on: