No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 04 May 2026 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been found in osrg GoBGP up to 4.3.0. This impacts the function SRv6L3ServiceAttribute.DecodeFromBytes of the file pkg/packet/bgp/prefix_sid.go of the component SRv6 L3 Service. Such manipulation of the argument data leads to denial of service. The attack may be performed from remote. Upgrading to version 4.4.0 will fix this issue. The name of the patch is f9f7b55ec258e514be0264871fa645a2c3edad11. You should upgrade the affected component. | |
| Title | osrg GoBGP SRv6 L3 Service prefix_sid.go SRv6L3ServiceAttribute.DecodeFromBytes denial of service | |
| First Time appeared |
Osrg
Osrg gobgp |
|
| Weaknesses | CWE-404 | |
| CPEs | cpe:2.3:a:osrg:gobgp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Osrg
Osrg gobgp |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-04T05:00:16.556Z
Reserved: 2026-05-03T16:16:17.495Z
Link: CVE-2026-7734
No data.
Status : Received
Published: 2026-05-04T06:16:02.197
Modified: 2026-05-04T06:16:02.197
Link: CVE-2026-7734
No data.
OpenCVE Enrichment
Updated: 2026-05-04T06:30:38Z