An issue was discovered in FRRouting FRR through 9.0. bgpd/bgp_packet.c can read the initial byte of the ORF header in an ahead-of-stream situation.
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-28617.json"