CVE-2024-55553
CVE-2024-55553 is a vulnerability in FRRouting (FRR) that can be exploited to impact route handling performance. This issue arises when the size of updates received via RTR exceeds the socket buffer, triggering re-validation of all routes. Although the CVSS score is 7.5, the SVRS score of 68 highlights a tangible risk, especially since it's tagged as "In The Wild." An attacker can deliberately cause a high volume of route updates to continuously trigger re-validation, potentially overwhelming FRR routers, especially those with large routing tables. This can lead to increased BMP traffic and impact the route handling performance of all FRR instances using RPKI globally. This denial-of-service condition makes timely patching crucial. Versions 10.0.3, 10.1.2, 10.2.1, and 10.3 and later contain the fix.
Indicators of Compromise
Exploits
News
Social Media
Affected Software
References
CWE Details
CVE Radar
Real-time CVE Intelligence & Vulnerability Management Platform
CVE Radar provides comprehensive vulnerability intelligence by monitoring CVE databases, security advisories, and threat feeds. Get instant updates on new vulnerabilities, exploit details, and mitigation strategies specific to your assets.