CVE-2026-37457
Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 8
An off-by-one out-of-bounds write vulnerability in the bgp_flowspec_op_decode() function (bgpd/bgp_flowspec_util.c) of FRRouting (FRR) stable/10.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted FlowSpec component.
- CVSS
- 7.5
- EPSS
- 0.39% 31.6% percentile
- CISA KEV
- Not listed
- Published
- 2026.05.02