Null Pointer Dereference in FRRouting's BGP Flowspec Processor
CVE-2023-41909
7.5HIGH
What is CVE-2023-41909?
The vulnerability discovered in FRRouting affects the bgp_nlri_parse_flowspec function in bgpd/bgp_flowspec.c. It processes malformed requests that lack required attributes, potentially leading to a NULL pointer dereference. This can have serious implications for network stability and security, making it essential for users to apply the necessary updates to mitigate risks associated with this flaw.