Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[GHSA-hrrq-wpmq-47mf] In FRRouting (FRR) before 10.3, it is possible for an... #5147

Conversation

ichdasich
Copy link

Updates

  • Affected products
  • CVSS v3
  • Description
  • References
  • Severity
  • Summary

Comments
Expanded the description of the vulnerability as well as illustrated potential impact and exploitation. Clarified the severity rating. Added affected version and further information on the initial commit leading to the vulnerability.

@github-actions github-actions bot changed the base branch from main to ichdasich/advisory-improvement-5147 January 7, 2025 09:17
@shelbyc
Copy link
Contributor

shelbyc commented Jan 7, 2025

👋 Hi @ichdasich, https://github.com/FRRouting/frr isn't in one of the GitHub Advisory Database's supported ecosystems. Unfortunately, this means we can't review and issue Dependabot alerts for GHSA-hrrq-wpmq-47mf and therefore can't accept the pull request.

It's clear that you've put a lot of work and care into providing more thorough information about CVE-2024-55553. If you haven't done so already, I would recommend reaching out to MITRE, the CNA that issued CVE-2024-55553, at https://cveform.mitre.org/ to request that they update the existing entry for CVE-2024-55553 with the information you provided in this PR.

@shelbyc shelbyc closed this Jan 7, 2025
@github-actions github-actions bot deleted the ichdasich-GHSA-hrrq-wpmq-47mf branch January 7, 2025 16:33
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants