CVE-2023-47234: Frrouting

High severity, CVSS 7.5. EPSS: 0.9% chance of exploitation in the next 30 days.

An issue was discovered in FRRouting FRR through 9.0.1. A crash can occur when processing a crafted BGP UPDATE message with a MP_UNREACH_NLRI attribute and additional NLRI data (that lacks mandatory path attributes).

Affected products

  • Frrouting Frrouting: up to and including 9.0.1

Published 2023-11-03. Last modified 2026-06-17.