CVE-2026-37459
FRRouting · FRRouting (FRR)
An integer underflow vulnerability exists in the FRRouting (FRR) stable/10 release.
Executive summary
A high-severity integer underflow flaw in FRRouting (FRR) could result in service instability or remote exploitation.
Vulnerability
This integer underflow vulnerability occurs within the FRRouting codebase. Such vulnerabilities often lead to memory corruption, which can be leveraged by an attacker to cause a denial-of-service or execute arbitrary code.
Business impact
With a CVSS score of 7.5, this is a High-severity vulnerability. Because FRR is a critical networking component, any instability or potential for exploitation could jeopardize the availability of the entire network segment it manages.
Remediation
Immediate Action: Upgrade to the latest version of FRRouting as recommended by the project maintainers to resolve the integer underflow issue.
Proactive Monitoring: Monitor the FRR daemon for unexpected restarts or performance degradation.
Compensating Controls: Implement strict control plane policing to limit the volume and nature of traffic processed by the routing daemon.
Exploitation status
Public Exploit Available: false
Analyst recommendation
Maintaining the integrity of routing software is critical for network security. Administrators are advised to update their FRRouting deployments immediately to ensure the stability and security of their routing environment.