CVE-2025-43971

Published Apr 21, 2025

Last updated 2 months ago

Overview

Description
An issue was discovered in GoBGP before 3.35.0. pkg/packet/bgp/bgp.go allows attackers to cause a panic via a zero value for softwareVersionLen.
Source
cve@mitre.org
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
7.5
Impact score
3.6
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Severity
HIGH

Weaknesses

cve@mitre.org
CWE-193
nvd@nist.gov
CWE-193

Social media

Hype score
Not currently trending
  1. CVE-2025-43971 (CVSS:8.6, HIGH) is Undergoing Analysis. An issue was discovered in GoBGP before 3.35.0. pkg/packet/bgp/bgp.go allows attackers to cause a panic via a zero value..https://t.co/dQHjS9xrQp #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    26 Apr 2025

    7 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. GoBGP Goes Boom: Unpacking the CVE-2025-43971 Panic Vulnerability https://t.co/plkWEhYWJ8

    @_cvereports

    22 Apr 2025

    29 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. [CVE-2025-43971: HIGH] An issue was discovered in GoBGP before 3.35.0. pkg/packet/bgp/bgp.go allows attackers to cause a panic via a zero value for softwareVersionLen.#cve,CVE-2025-43971,#cybersecurity https://t.co/2WgYOhmXoj https://t.co/EPZmJheggd

    @CveFindCom

    22 Apr 2025

    37 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🚨 CVE-2025-43971 🔴 HIGH (8.6) 🏢 GoBGP - GoBGP 🏗️ 0 🔗 https://t.co/st9uY1VS3D 🔗 https://t.co/ZBidgb1X5C #CyberCron #VulnAlert #InfoSec https://t.co/Xtsij2BITa

    @cybercronai

    21 Apr 2025

    20 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. New post from https://t.co/uXvPWJy6tj (CVE-2025-43971 | GoBGP up to 3.34.x pkg/packet/bgp/bgp.go softwareVersionLen off-by-one) has been published on https://t.co/rxqB6MiMVP

    @WolfgangSesin

    21 Apr 2025

    8 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. CVE-2025-43971 An issue was discovered in GoBGP before 3.35.0. pkg/packet/bgp/bgp.go allows attackers to cause a panic via a zero value for softwareVersionLen. https://t.co/HxvOdJAph3

    @CVEnew

    21 Apr 2025

    750 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations