diff options
author | Yi Zhao <yi.zhao@windriver.com> | 2023-08-28 18:49:18 +0800 |
---|---|---|
committer | Khem Raj <raj.khem@gmail.com> | 2023-08-28 08:55:26 -0700 |
commit | ee1026ab77dcb31b0f5cb723b4d998aab4c00382 (patch) | |
tree | e9378cb0c9da0bc4c7ab9780d4c940ef5554e4a5 /meta-python/recipes-devtools/python/python3-lrparsing/0001-setup.py-use-setuptools-instead-of-distutils.patch | |
parent | f74d5dfd69a29bb364648d424d7575d46f033478 (diff) | |
download | meta-openembedded-ee1026ab77dcb31b0f5cb723b4d998aab4c00382.tar.gz |
frr: Security fix CVE-2023-3748
CVE-2023-3748:
A flaw was found in FRRouting when parsing certain babeld unicast hello
messages that are intended to be ignored. This issue may allow an
attacker to send specially crafted hello messages with the unicast flag
set, the interval field set to 0, or any TLV that contains a sub-TLV
with the Mandatory flag set to enter an infinite loop and cause a denial
of service.
Reference:
https://nvd.nist.gov/vuln/detail/CVE-2023-3748
Patch from:
https://github.com/FRRouting/frr/commit/ae1e0e1fed77716bc06f181ad68c4433fb5523d0
Signed-off-by: Yi Zhao <yi.zhao@windriver.com>
Signed-off-by: Khem Raj <raj.khem@gmail.com>
Diffstat (limited to 'meta-python/recipes-devtools/python/python3-lrparsing/0001-setup.py-use-setuptools-instead-of-distutils.patch')
0 files changed, 0 insertions, 0 deletions