No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 04 May 2026 05:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in osrg GoBGP up to 4.3.0. Affected is the function PathAttributeAigp.DecodeFromBytes of the file pkg/packet/bgp/bgp.go of the component AIGP Attribute Parser. Performing a manipulation results in buffer overflow. It is possible to initiate the attack remotely. Upgrading to version 4.4.0 is able to address this issue. The patch is named 51ad1ada06cb41ce47b7066799981816f50b7ced. The affected component should be upgraded. | |
| Title | osrg GoBGP AIGP Attribute bgp.go PathAttributeAigp.DecodeFromBytes buffer overflow | |
| First Time appeared |
Osrg
Osrg gobgp |
|
| Weaknesses | CWE-119 CWE-120 |
|
| CPEs | cpe:2.3:a:osrg:gobgp:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Osrg
Osrg gobgp |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-04T05:15:11.921Z
Reserved: 2026-05-03T16:16:27.612Z
Link: CVE-2026-7735
No data.
Status : Received
Published: 2026-05-04T06:16:02.367
Modified: 2026-05-04T06:16:02.367
Link: CVE-2026-7735
No data.
OpenCVE Enrichment
Updated: 2026-05-04T06:30:38Z