An issue was discovered in bgpd in FRRouting (FRR) 8.3. In bgp_notify_send_with_data() and bgp_process_packet() in bgp_packet.c, there is a possible use-after-free due to a race condition. This could lead to Remote Code Execution or Information Disclosure by sending crafted BGP packets. User interaction is not needed for exploitation.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3797-1 | frr security update |
Debian DLA |
DLA-3865-1 | frr security update |
Ubuntu USN |
USN-5685-1 | FRR vulnerabilities |
Ubuntu USN |
USN-6807-1 | FRR vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 04 Nov 2025 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-04T16:09:47.299Z
Reserved: 2022-07-29T00:00:00.000Z
Link: CVE-2022-37035
No data.
Status : Modified
Published: 2022-08-02T23:15:18.230
Modified: 2025-11-04T16:15:50.153
Link: CVE-2022-37035
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Ubuntu USN