Medium severity5.3NVD Advisory· Published Aug 29, 2023· Updated Jun 17, 2026
CVE-2023-38283
CVE-2023-38283
Description
In OpenBGPD before 8.1, incorrect handling of BGP update data (length of path attributes) set by a potentially distant remote actor may cause the system to incorrectly reset a session. This is fixed in OpenBSD 7.3 errata 006.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- OpenBSD/OpenBGPDdescription
Patches
Vulnerability mechanics
References
5- ftp.openbsd.org/pub/OpenBSD/patches/7.3/common/006_bgpd.patch.signvdPatch
- blog.benjojo.co.uk/post/bgp-path-attributes-grave-error-handlingnvdExploitThird Party Advisory
- github.com/openbgpd-portable/openbgpd-portable/releases/tag/8.1nvdRelease Notes
- news.ycombinator.com/itemnvdMailing List
- www.openbsd.org/errata73.htmlnvdRelease Notes
News mentions
0No linked articles in our index yet.