PT-2026-25770 · Gobgp · Gobgp

Bacon251

·

Published

2026-01-01

·

Updated

2026-04-07

·

CVE-2026-30405

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions GoBGP versions 4.2.0
Description An issue allows a remote attacker to cause a denial of service via the NEXT HOP path attribute. The issue resides in the handling of the NEXT HOP path attribute within the GoBGP software.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Weakness Enumeration

Related Identifiers

CVE-2026-30405
GHSA-4P9M-8GC4-RW2H
GO-2026-4736

Affected Products

Gobgp