{"id":"CVE-2022-36440","details":"A reachable assertion was found in Frrouting frr-bgpd 8.3.0 in the peek_for_as4_capability function. Attackers can maliciously construct BGP open packets and send them to BGP peers running frr-bgpd, resulting in DoS.","modified":"2026-08-12T03:51:35.961275726Z","published":"2023-04-03T00:00:00Z","related":["ALSA-2023:6434"],"database_specific":{"cna_assigner":"mitre","osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/36xxx/CVE-2022-36440.json"},"references":[{"type":"WEB","url":"https://github.com/spwpun/pocs/blob/main/frr-bgpd.md"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/36xxx/CVE-2022-36440.json"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3HU4PKLUVB5CTMOVQ2GV33TNUNMJCBGD/"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/BBXEXL2ZQBWCBLNUP6P67FHECXQWSK3L/"},{"type":"ADVISORY","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GM66PNHGCXZU66LQCTP2FSJLFF6CVMSI/"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-36440"},{"type":"ADVISORY","url":"https://www.debian.org/security/2023/dsa-5495"},{"type":"PACKAGE","url":"https://github.com/spwpun/pocs"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2023/09/msg00020.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/frrouting/frr","events":[{"introduced":"23ad8186e5bec98d849c56a35f956d390d608e7f"},{"last_affected":"23ad8186e5bec98d849c56a35f956d390d608e7f"}],"database_specific":{"source":"CPE_STRING","cpe":"cpe:2.3:a:frrouting:frrouting:8.3:-:*:*:*:*:*:*","extracted_events":[{"introduced":"8.3-NA"},{"last_affected":"8.3-NA"}]}}],"versions":["8.3-NA","frr-8.3-dev"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-36440.json"}}],"schema_version":"1.9.0"}