PT-2026-28761 · Frrouting+3 · Frrouting Frr+3

·

CVE-2026-5107

·

Published

2026-03-30

·

Updated

2026-07-06

CVSS v3.1

4.2

Medium

VectorAV:N/AC:H/PR:L/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions FRRouting FRR versions up to 10.5.1
Description A security issue exists in FRRouting FRR related to improper access controls within the EVPN Type-2 Route Handler component. The issue is located in the process type2 route function of the bgpd/bgp evpn.c file. The attack can be initiated remotely and is considered difficult to exploit.
Recommendations Deploy a patch to address this issue.

Exploit

Fix

Improper Access Control

Incorrect Privilege Assignment

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-81087
BDU:2026-09988
CVE-2026-5107
OPENSUSE-SU-2026:10606-1
OPENSUSE-SU-2026:20682-1
OPENSUSE-SU-2026:20898-1
SUSE-SU-2026:2121-1
SUSE-SU-2026:21550-1
SUSE-SU-2026:22026-1
SUSE-SU-2026:2454-1
SUSE-SU-2026:2455-1
SUSE-SU-2026:2457-1
USN-8175-1

Affected Products

Frrouting Frr
Linuxmint
Red Os
Ubuntu