High severity7.5NVD Advisory· Published Oct 27, 2025· Updated Jun 17, 2026
CVE-2025-61099
CVE-2025-61099
Description
FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7- osv-coords4 versionspkg:rpm/suse/frr&distro=SUSE%20Linux%20Enterprise%20Server%20LTSS%20Extended%20Security%2012%20SP5pkg:rpm/opensuse/frr&distro=openSUSE%20Leap%2015.6pkg:rpm/suse/frr&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015%20SP7pkg:rpm/opensuse/frr&distro=openSUSE%20Tumbleweed
< 8.5.6-8.9.1+ 3 more
- (no CPE)range: < 8.5.6-8.9.1
- (no CPE)range: < 8.5.6-150500.4.36.1
- (no CPE)range: < 8.5.6-150500.4.36.1
- (no CPE)range: < 10.2.1-4.1
Patches
Vulnerability mechanics
References
4- github.com/FRRouting/frr/pull/19480/commits/0042fbe8ca5aba866b4f0d166e54066bba5ab14envdPatch
- github.com/FRRouting/frr/issues/19471nvdExploitIssue TrackingThird Party Advisory
- github.com/FRRouting/frr/pull/19480nvdIssue TrackingThird Party Advisory
- github.com/s1awwhy/BugList/blob/main/CVE-2025-61099.mdnvdThird Party Advisory
News mentions
0No linked articles in our index yet.