BGP implemented in the Go Programming Language
github.com/osrg/[email protected] low health (30/100) — consider alternatives
Update to >= 3.35.0 to fix known vulnerabilities
| Severity | ID | Summary | Fixed in |
|---|---|---|---|
| medium | CVE-2025-43973 | GoBGP does not verify that the input length | 3.35.0 |
| medium | CVE-2025-43970 | GoBGP does not properly check the input length | 3.35.0 |
| medium | CVE-2025-43972 | GoBGP crashes in the flowspec parser | 3.35.0 |
| unknown | CVE-2025-43970 | GoBGP does not properly check the input length in github.com/osrg/gobgp | 3.35.0 |
| unknown | CVE-2025-43971 | GoBGP panics due to a zero value for softwareVersionLen in github.com/osrg/gobgp | 3.35.0 |
| unknown | CVE-2025-43972 | GoBGP crashes in the flowspec parser in github.com/osrg/gobgp | 3.35.0 |
| unknown | CVE-2025-43973 | GoBGP does not verify that the input length in github.com/osrg/gobgp | 3.35.0 |
| unknown | CVE-2026-30405 | GoBGP vulnerable to a denial of service via the NEXT_HOP path attribute in github.com/osrg/gobgp | — |
Get this data programmatically — free, no authentication.
curl https://depscope.dev/api/check/go/github.com/osrg/gobgpLast updated · 2021-12-01T04:15:02Z