{"id":"GO-2026-5427","summary":"GoBGP has an Integer Underflow Issue in github.com/osrg/gobgp","details":"GoBGP has an Integer Underflow Issue in github.com/osrg/gobgp","aliases":["CVE-2026-7736","GHSA-hj4w-qr9j-c4cf"],"modified":"2026-07-07T20:30:13.642501939Z","published":"2026-07-07T16:52:19Z","database_specific":{"url":"https://pkg.go.dev/vuln/GO-2026-5427","review_status":"REVIEWED"},"references":[{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-hj4w-qr9j-c4cf"},{"type":"FIX","url":"https://github.com/osrg/gobgp/commit/76d911046344a3923cbe573364197aa081944592"},{"type":"WEB","url":"https://github.com/osrg/gobgp/releases/tag/v4.4.0"},{"type":"WEB","url":"https://vuldb.com/submit/807604"},{"type":"WEB","url":"https://vuldb.com/vuln/360911"},{"type":"WEB","url":"https://vuldb.com/vuln/360911/cti"}],"affected":[{"package":{"name":"github.com/osrg/gobgp/v4","ecosystem":"Go","purl":"pkg:golang/github.com/osrg/gobgp/v4"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"4.4.0"}]}],"ecosystem_specific":{"imports":[{"symbols":["ParseBody","parseRibEntry"],"path":"github.com/osrg/gobgp/v4/pkg/packet/mrt"}]},"database_specific":{"source":"https://vuln.go.dev/ID/GO-2026-5427.json"}}],"schema_version":"1.7.5"}