osrg GoBGP
cpe:2.3:a:osrg:gobgp:*:*:*:*:*:*:*
- <= 4.3.0
An integer underflow vulnerability has been identified in osrg GoBGP versions prior to 4.4.0. The issue arises in the parseRibEntry function within the MRT packet handling code. This vulnerability can be exploited remotely, leading to potential manipulation of BGP route information.
Exploitation of this vulnerability allows for integer underflow, which can be manipulated to cause unexpected behavior in the application, potentially leading to memory corruption or other forms of exploitation.
Users are advised to upgrade to osrg GoBGP version 4.4.0 or later, where this vulnerability has been addressed.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.