ospf_te_parse_te in ospfd/ospf_te.c in FRRouting (FRR) through 9.1 allows remote attackers to cause a denial of service (ospfd daemon crash) via a malformed OSPF LSA packet, because of an attempted access to a missing attribute field.
The product does not initialize a critical resource.
Link | Tags |
---|---|
https://github.com/FRRouting/frr/pull/15431 | patch issue tracking |