FRR Release 9.1.2
Debian Packages - https://deb.frrouting.org
RPM Packages - https://rpm.frrouting.org
Snaps - https://snapcraft.io/frr
Docker - quay.io/frrouting/frr
Fixed CVE-2024-44070
More details: https://frrouting.org/security/cve-2024-44070
Bug Fixes
bgpd
- Fix crash at no rpki
- Fix, do not access peer->notify.data when it is null
- Fix for CVE-2024-44070
- Ignore RFC8212 for BGP Confederations
- Check if we have really enough data before doing memcpy for software version
- Set last reset reason to admin shutdown if it was manually
isisd
- Fix crash when reading asla
- Add missing
exit
statement - Fix update link params after circuit is up
- Fix crash when calculating the neighbor spanning tree based on the fragmented LSP
zebra
- Ensure non-equal id's are not same nhg's
pimd
- Fix msdp setting of sa->rp
- Fix crash on non-existent interface
ospfd
- Fix internal ldp-sync state flags when feature is disabled
zebra
- Fix missing static routes
- Fix to avoid two Vrfs with same table ids
- Fix evpn mh bond member proto reinstall
ldpd
- Fix wrong gtsm count
ripd
- Change the start value of sequence 1 to 0