cbcvebase.
CVE-2023-45886
published 2023-11-21

CVE-2023-45886: The BGP daemon (bgpd) in IP Infusion ZebOS through 7.10.6 allow remote attackers to cause a denial of service by sending crafted BGP update messages containing…

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
The BGP daemon (bgpd) in IP Infusion ZebOS through 7.10.6 allow remote attackers to cause a denial of service by sending crafted BGP update messages containing a malformed attribute.

Affected

14 ranges
VendorProductVersion rangeFixed in
f5big-ip_global_traffic_manager13.1.0 – 13.1.5
f5big-ip_global_traffic_manager14.1.0 – 14.1.5
f5big-ip_global_traffic_manager15.1.0 – 15.1.10
f5big-ip_global_traffic_manager16.1.0 – 16.1.4
f5big-ip_global_traffic_manager17.1.0 – 17.1.1
f5big-ip_local_traffic_manager13.1.0 – 13.1.5
f5big-ip_local_traffic_manager14.1.0 – 14.1.5
f5big-ip_local_traffic_manager15.1.0 – 15.1.10
f5big-ip_local_traffic_manager16.1.0 – 16.1.4
f5big-ip_local_traffic_manager17.1.0 – 17.1.1
f5big-ip_next
f5big-ip_next_cloud-native_network_functions1.1.0 – 1.1.1
f5big-ip_next_service_proxy_for_kubernetes1.5.0 – 1.8.2
ipinfusionzebos<= 7.10.6