GHSA-x36x-qpcf-qwfjMediumCVSS 6.7

In FRRouting FRR before 8.5, the service user (usually frr) can escalate its privileges to root...

Published
September 14, 2026
Last Modified
September 14, 2026

🔗 CVE IDs covered (1)

📋 Description

In FRRouting FRR before 8.5, the service user (usually frr) can escalate its privileges to root by monitoring the configuration directory (/etc/frr) and replacing config files upon creation with, for example, symlinks to change the ownership of arbitrary files. This is a TOCTOU Race Condition caused by a combination of touch and chown.

🔗 References (6)