BGP CVEs ( CVE-2022-40302 , CVE-2022-40318 , CVE-2022-43681 )

RaphaelL
Kind of a big deal
Kind of a big deal

BGP CVEs ( CVE-2022-40302 , CVE-2022-40318 , CVE-2022-43681 )

Hi ,

 

Do we know if MXs are affected by these 3 CVEs ? I wasn't able to confirm with the Open source licences. Might have to open a case to have confirmation , but was wondering if anybody already had done that.

 

https://www.forescout.com/blog/three-new-bgp-message-parsing-vulnerabilities-disclosed-in-frrouting-...

 

 

 

Thanks , 

2 Replies 2
alemabrahao
Kind of a big deal

You can check it here.

 

https://sec.cloudapps.cisco.com/security/center/publicationListing.x?product=Cisco&sort=-day_sir#~Vu...

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
RaphaelL
Kind of a big deal
Kind of a big deal

had already checked. Some Cisco products are vulnerable but the CVEs are not even listed there.

Get notified when there are additional replies to this discussion.