CVE-2025-61107 is a NULL pointer dereference vulnerability affecting FRRouting (FRR) versions 4.0 through 10.4.1, specifically within the show_vty_ext_pref_pref_sid function in ospf_ext.c. This flaw allows unauthenticated attackers to trigger a Denial of Service (DoS) by sending a specially crafted LSA Update packet. Rated 7.5 HIGH on the CVSS scale, it presents a significant availability risk with low attack complexity and no user interaction required. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 4.0, <= 10.4.1CPE matchmatch criteria | cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
frr: NULL pointer dereference in show_vty_ext_pref_pref_sid() in ospf_ext.c
Oct 28, 2025FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet.
Oct 14, 2025