CVE-2022-40318 is a denial-of-service vulnerability affecting FRRouting (FRR) through version 8.4, specifically in its bgpd component. An attacker can trigger an assertion failure and daemon restart, or an out-of-bounds read, by sending a specially crafted BGP OPEN message with an Extended Length option (type 0xff). This is due to inconsistent boundary checks within the bgp_open_option_parse function. The vulnerability has a CVSS score of 6.5 (Medium), indicating it can be exploited remotely with low attack complexity and requires low privileges, leading to high availability impact. While the EPSS score is low, suggesting a low probability of exploitation, the FAUCET Risk Score is 36/100. Currently, there is no evidence of active exploitation, and no public exploit code is available on platforms like Metasploit or ExploitDB. However, there has been some community discussion and media coverage, including an article from SecurityWeek, highlighting the potential for BGP implementation vulnerabilities to cause disruptions.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 8.4CPE matchmatch criteria | cpe:2.3:a:frrouting:frrouting:*:*:*:*:*:*:*:* | ||
10.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:* | ||
11.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:* | ||
12.0CPE matchmatch criteria | cpe:2.3:o:debian:debian_linux:12.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.