A vulnerability classified as problematic has been found in osrg GoBGP up to 3.37.0. Affected is the function SplitRTR of the file pkg/packet/rtr/rtr.go. The manipulation leads to out-of-bounds read.

This vulnerability is traded as CVE-2025-7464. It is possible to launch the attack remotely. There is no exploit available.

It is recommended to apply a patch to fix this issue.