BGP CVEs ( CVE-2022-40302 , CVE-2022-40318 , CVE-2022-43681 )

RaphaelL
Kind of a big deal
Kind of a big deal

BGP CVEs ( CVE-2022-40302 , CVE-2022-40318 , CVE-2022-43681 )

Hi ,

 

Do we know if MXs are affected by these 3 CVEs ? I wasn't able to confirm with the Open source licences. Might have to open a case to have confirmation , but was wondering if anybody already had done that.

 

https://www.forescout.com/blog/three-new-bgp-message-parsing-vulnerabilities-disclosed-in-frrouting-...

 

 

 

Thanks , 

2 Replies 2
alemabrahao
Kind of a big deal
Kind of a big deal

You can check it here.

 

https://sec.cloudapps.cisco.com/security/center/publicationListing.x?product=Cisco&sort=-day_sir#~Vu...

I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.

had already checked. Some Cisco products are vulnerable but the CVEs are not even listed there.

Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels