Upstream information

CVE-2026-37457 at MITRE

Description

An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component.

SUSE information

Overall state of this security issue: Does not affect SUSE products

SUSE Bugzilla entry: 1263863 [NEW]

No SUSE Security Announcements cross referenced.


SUSE Timeline for this CVE

CVE page created: Fri May 1 22:01:00 2026
CVE page last modified: Fri May 8 12:08:57 2026