osrg GoBGP Integer Underflow Vulnerability in MRT RIB Entry Parsing

Vulnerability

An integer underflow vulnerability has been identified in osrg GoBGP versions prior to 4.4.0. The issue arises in the parseRibEntry function within the MRT packet handling code. This vulnerability can be exploited remotely, leading to potential manipulation of BGP route information.

Impact

Exploitation of this vulnerability allows for integer underflow, which can be manipulated to cause unexpected behavior in the application, potentially leading to memory corruption or other forms of exploitation.

Remediation

Users are advised to upgrade to osrg GoBGP version 4.4.0 or later, where this vulnerability has been addressed.

Added: May 4, 2026, 7:25 AM
Updated: May 4, 2026, 7:25 AM

Vulnerability Rating

Custom Algorithm
spread
3.4
impact
1.9
exploitability
8.2
remediation
7.7
relevance
7.4
threat
3.2
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.