Improper resource shutdown or release in frr - CVE-2024-55553

 

Improper resource shutdown or release in frr - CVE-2024-55553

Published: September 25, 2025


Vulnerability identifier: #VU116116
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2024-55553
CWE-ID: CWE-404
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to the application revalidates all routes if the total size of an update received via RTR exceeds the internal socket's buffer size, default 4K on most OSes. A remote attacker can trigger re-parsing of the RIB for FRR routers using RTR by causing more than this number of updates during an update interval (usually 30 minutes).


Affected software

frr
SUSE Linux Enterprise Server 12 SP5 LTSS Extended
SUSE Linux Enterprise Server 12
SUSE Linux Enterprise Server for SAP Applications 12
SUSE Linux Enterprise Real Time 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
Server Applications Module
openSUSE Leap
libmlag_pb0
libfrrcares0
libfrr0
frr
libfrrcares0-debuginfo
libfrrgrpc_pb0
libfrrzmq0-debuginfo
libmlag_pb0-debuginfo
libfrrospfapiclient0
libfrr_pb0
libfrrfpm_pb0
frr-debuginfo
frr-debugsource
libfrrsnmp0
frr-devel
libfrrfpm_pb0-debuginfo
libfrr0-debuginfo
libfrrgrpc_pb0-debuginfo
libfrrsnmp0-debuginfo
libfrrzmq0
libfrr_pb0-debuginfo
libfrrospfapiclient0-debuginfo

How to mitigate CVE-2024-55553

Install updates from vendor's website.

frr - addressed in versions 10.0.3, 10.1.2, 10.2.1, 10.3
libmlag_pb0 - addressed in versions 7.4-150300.4.35.1, 8.5.6-150500.4.33.1
libfrrcares0 - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
libfrr0 - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
frr - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
libfrrcares0-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
libfrrgrpc_pb0 - update to 7.4-150300.4.35.1
libfrrzmq0-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-150500.4.33.1
libmlag_pb0-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-150500.4.33.1
libfrrospfapiclient0 - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
libfrr_pb0 - addressed in versions 7.4-150300.4.35.1, 8.5.6-150500.4.33.1
libfrrfpm_pb0 - addressed in versions 7.4-150300.4.35.1, 8.5.6-150500.4.33.1
frr-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
frr-debugsource - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
libfrrsnmp0 - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
frr-devel - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
libfrrfpm_pb0-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-150500.4.33.1
libfrr0-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
libfrrgrpc_pb0-debuginfo - update to 7.4-150300.4.35.1
libfrrsnmp0-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1
libfrrzmq0 - addressed in versions 7.4-150300.4.35.1, 8.5.6-150500.4.33.1
libfrr_pb0-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-150500.4.33.1
libfrrospfapiclient0-debuginfo - addressed in versions 7.4-150300.4.35.1, 8.5.6-8.6.1, 8.5.6-150500.4.33.1

External References

Related Security Bulletins