CVE List

CVE-2025-43970

Moderate 4.3

An issue was discovered in GoBGP before 3.35.0. pkg/packet/mrt/mrt.go does not properly check the input length, e.g., by ensuring that there are 12 bytes or 36 bytes (depending on the address family).

Published April 21, 2025.

Affected software

Get alerts for Osrg Gobgp

Reference links