Fedora 44 Denial of Service Vulnerabilities Disclosed

Fedora 44 Denial of Service Vulnerabilities Disclosed

6h ago Linuxsecurity 94% similarity 57.8
Share:

Article Content

Browse articles
ThreatCluster

Fedora 44 has released advisories for multiple denial of service vulnerabilities affecting the frr and grout packages. The vulnerabilities, identified as CVE-2026-37457, CVE-2026-37458, and CVE-2026-37459, allow attackers to exploit crafted FlowSpec components and UPDATE messages. These issues were published between May 1 and May 4, 2026, and could lead to service disruptions for users of affected systems. The new versions of frr (10.6.1) and grout (0.16.0) have been made available to address these vulnerabilities. Users are advised to upgrade their systems using the 'dnf' update program. The advisories were published on June 24, 2026, indicating the urgency of the situation.

Key Points: • Multiple denial of service vulnerabilities identified in Fedora 44's frr and grout packages. • CVE-2026-37457, CVE-2026-37458, and CVE-2026-37459 allow exploitation via crafted messages. • Users are urged to upgrade to the latest versions to mitigate these vulnerabilities.

ThreatCluster AI

Timeline

2026-05-01
CVE-2026-37457 published
A denial of service vulnerability via crafted FlowSpec component disclosed, affecting frr.
Linuxsecurity
2026-05-04
CVE-2026-37458 published
Denial of service vulnerability via crafted UPDATE message disclosed for frr.
Linuxsecurity
2026-05-04
CVE-2026-37459 published
Another denial of service vulnerability via crafted BGP UPDATE message disclosed for frr.
Linuxsecurity
2026-06-24
Fedora 44 advisory published
Fedora 44 releases advisories for frr and grout vulnerabilities, urging users to upgrade.
Linuxsecurity

Community

Browse all →