// For flags

CVE-2023-34061

CVE-2023-34061 – Gorouter route pruning

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Cloud Foundry routing release versions from v0.163.0 to v0.283.0 are vulnerable to a DOS attack. An unauthenticated attacker can use this vulnerability to force route pruning and therefore degrade the service availability of the Cloud Foundry deployment.

Las versiones de enrutamiento de Cloud Foundry desde v0.163.0 hasta v0.283.0 son vulnerables a un ataque de DOS. Un atacante no autenticado puede utilizar esta vulnerabilidad para forzar la poda de rutas y, por lo tanto, degradar la disponibilidad del servicio de la implementación de Cloud Foundry.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2023-05-25 CVE Reserved
  • 2024-01-12 CVE Published
  • 2024-01-19 EPSS Updated
  • 2024-08-02 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-400: Uncontrolled Resource Consumption
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Pivotal
Search vendor "Pivotal"
Cloud Foundry Deployment
Search vendor "Pivotal" for product "Cloud Foundry Deployment"
>= 0.28.0 <= 33.5.0
Search vendor "Pivotal" for product "Cloud Foundry Deployment" and version " >= 0.28.0 <= 33.5.0"
-
Affected
Pivotal
Search vendor "Pivotal"
Cloud Foundry Routing Release
Search vendor "Pivotal" for product "Cloud Foundry Routing Release"
>= 0.163.0 <= 0.283.0
Search vendor "Pivotal" for product "Cloud Foundry Routing Release" and version " >= 0.163.0 <= 0.283.0"
-
Affected