Back

HIGH

frr: FRRouting: Denial of Service via crafted BGP UPDATE message

Published Jun 3, 2026

Description

Missing input validation in the rfapiRibBi2Ri() function (rfapi_rib.c) of FRRouting (FRR) stable/10.0 to stable/10.6 allows attackers to cause a Denial of Service (DoS) via supplying a crafted BGP UPDATE message.

Affected products

Remediation

Red Hat statement

This Important flaw in FRRouting (FRR) allows a remote, unauthenticated attacker to trigger a denial of service by sending a specially crafted BGP UPDATE message. This can lead to the disruption of network services managed by FRR instances configured to handle BGP traffic. The vulnerability does not require complex attack vectors or user interaction, making it a significant availability risk for affected systems.

Red Hat mitigation

To mitigate this issue, restrict access to FRRouting's BGP services to only trusted peers and networks. Implement firewall rules to limit inbound connections to BGP port 179 (TCP) to known, legitimate BGP neighbors. If BGP is not actively used, consider disabling the BGP daemon within FRR to eliminate the attack surface. Warning: Modifying firewall rules or FRR configuration may impact network connectivity and requires careful planning and testing. A restart of the FRR service may be required for changes to take effect.

Metrics

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 3, 2026
Updated Jun 5, 2026
Reserved Apr 6, 2026
CISA Vulnrichment
Updated Jun 4, 2026
NVD
Status Awaiting Analysis
Modified Jul 22, 2026
Red Hat
Severity Important
Public date Jun 3, 2026