frr-8.2.2-4.el9

エラータID: AXSA:2023-4650:01

Release date: 
Tuesday, January 10, 2023 - 09:22
Subject: 
frr-8.2.2-4.el9
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

FRRouting is free software that manages TCP/IP based routing protocols. It supports BGP4, OSPFv2, OSPFv3, ISIS, RIP, RIPng, PIM, NHRP, PBR, EIGRP and BFD.

The following packages have been upgraded to a later upstream version: frr (8.2.2).

Security Fix(es):

* frrouting: overflow bugs in unpack_tlv_router_cap (CVE-2022-26125)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2022-26125
Buffer overflow vulnerabilities exist in FRRouting through 8.1.0 due to wrong checks on the input packet length in isisd/isis_tlvs.c.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. frr-8.2.2-4.el9.src.rpm
    MD5: 7b5026af9654ab2aafc496f05910fc64
    SHA-256: 4c321d8f9fc04ec10b448a80ade9b4770545138f0cd0e7f4ad0eee6b22b4eed8
    Size: 9.01 MB

Asianux Server 9 for x86_64
  1. frr-8.2.2-4.el9.x86_64.rpm
    MD5: 5c929e2cd1a544adcc15023c78a20bdd
    SHA-256: 4502252e7fd3dd5a0ba29911b33b4ba4dfb91174b58df68eb2a26c4080b34440
    Size: 4.35 MB