


Perceptive Security
SOC/SIEM Consultancy

A vulnerability was determined in osrg GoBGP up to 4.3.0. Affected by this vulnerability is the function parseRibEntry of the file pkg/packet/mrt/mrt.go. Execut…
Published:
3 mei 2026 om 22:00:00
Alert date:
4 mei 2026 om 08:00:49
Source:
nvd.nist.gov
Network Infrastructure
A remote integer underflow vulnerability (CVE-2026-7736) was discovered in osrg GoBGP versions up to 4.3.0. The vulnerability affects the parseRibEntry function in pkg/packet/mrt/mrt.go file. Attackers can exploit this remotely through manipulation techniques. The issue has been patched in version 4.4.0 with commit 76d911046344a3923cbe573364197aa081944592. Users are strongly advised to upgrade to the patched version to mitigate this security risk.
Technical details
Mitigation steps:
Affected products:
osrg GoBGP
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-7736
https://github.com/osrg/gobgp/
https://github.com/osrg/gobgp/commit/76d911046344a3923cbe573364197aa081944592
https://github.com/osrg/gobgp/releases/tag/v4.4.0
https://vuldb.com/submit/807604
https://vuldb.com/vuln/360911
https://vuldb.com/vuln/360911/cti
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
