Frrouting Frr vulnerabilities
2 known vulnerabilities affecting frrouting/frr.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM2
Vulnerabilities
Page 1 of 1
CVE-2026-28532P4MEDIUMCVSS 6.5fixed in 10.5.32026-04-30
CVE-2026-28532 [MEDIUM] CWE-125 CVE-2026-28532: FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering
FRRouting before 10.5.3 contains an integer overflow vulnerability in seven OSPF Traffic Engineering and Segment Routing TLV parser functions where a uint16_t accumulator variable truncates uint32_t values returned by the TLV_SIZE() macro, causing the loop termination condition to fail while pointer advancement continues unchecked. Attackers with an
nvd
CVE-2026-5107P4MEDIUMCVSS 4.2v10.5.0v10.5.12026-03-30
CVE-2026-5107 [MEDIUM] CWE-266 CVE-2026-5107: A vulnerability has been found in FRRouting FRR up to 10.5.1. This affects the function process_type
A vulnerability has been found in FRRouting FRR up to 10.5.1. This affects the function process_type2_route of the file bgpd/bgp_evpn.c of the component EVPN Type-2 Route Handler. The manipulation leads to improper access controls. The attack can be initiated remotely. The attack is considered to have high complexity. The exploitability is reported as
nvdosv