[CLSA-2026:1781101738] frr: Fix of CVE-2026-37457
Type:
security
Severity:
Important
Release date:
2026-06-10 14:29:22 UTC
Description:
- CVE-2026-37457: fix off-by-one out-of-bounds write in BGP FlowSpec operator-array bounds check (bgp_flowspec_op_decode and bgp_flowspec_bitmask_decode)
CVEs fixed:
Updated packages:
  • frr-8.3.1-5.el9_2.2.alma.tuxcare.els5.x86_64.rpm
    sha:a7054dcb10dc13cf13de248d785f846fe0aff9f843e84b7d982c3439bae00a5d
  • frr-selinux-8.3.1-5.el9_2.2.alma.tuxcare.els5.noarch.rpm
    sha:80f8da1d1cf82c9d33ec9059e459635315190211fec262656ac36bdf9921331e
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.