An issue was discovered in GoBGP before 3.35.0. pkg/packet/mrt/mrt.go does not properly check the input length, e.g., by ensuring that there are 12 bytes or 36 bytes (depending on the address family).
Metrics
Affected Vendors & Products
References
History
Mon, 21 Apr 2025 02:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 21 Apr 2025 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in GoBGP before 3.35.0. pkg/packet/mrt/mrt.go does not properly check the input length, e.g.. by ensuring that there are 12 bytes or 36 bytes (depending on the address family). | An issue was discovered in GoBGP before 3.35.0. pkg/packet/mrt/mrt.go does not properly check the input length, e.g., by ensuring that there are 12 bytes or 36 bytes (depending on the address family). |
Metrics |
cvssV3_1
|
cvssV3_1
|
Mon, 21 Apr 2025 01:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An issue was discovered in GoBGP before 3.35.0. pkg/packet/mrt/mrt.go does not properly check the input length, e.g.. by ensuring that there are 12 bytes or 36 bytes (depending on the address family). | |
Weaknesses | CWE-1284 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-04-21T00:00:00.000Z
Updated: 2025-04-21T01:56:11.101Z
Reserved: 2025-04-21T00:00:00.000Z
Link: CVE-2025-43970

Updated: 2025-04-21T01:56:04.334Z

Status : Awaiting Analysis
Published: 2025-04-21T01:15:45.310
Modified: 2025-04-21T14:23:45.950
Link: CVE-2025-43970

No data.