PatchDay Alert
MAY 4, 2026

CVE

CVE-2026-7736

0 field notes · 1 digest CVSS 7.3


Daily digests

An attacker can remotely trigger an integer underflow in GoBGP's MRT file parser (parseRibEntry), which could crash the BGP daemon or cause unpredictable behavior. No authentication is required. If you use GoBGP for route processing or MRT dump ingestion, this could take down your BGP sessions.

Get the digest

Free. Weekday mornings. Plain English CVE triage.

Check your inbox to confirm.