NLnet Labs’ Routinator up to and including version 0.12.1 may crash when trying to parse certain malformed RPKI objects. This is due to insufficient input checking in the bcder library covered by CVE-2023-39914.
References
Link | Resource |
---|---|
https://nlnetlabs.nl/downloads/routinator/CVE-2023-39915.txt | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: NLnet Labs
Published: 2023-09-13T14:20:59.967Z
Updated: 2023-09-13T14:20:59.967Z
Reserved: 2023-08-07T11:55:17.843Z
Link: CVE-2023-39915
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-09-13T15:15:07.763
Modified: 2023-09-15T19:04:36.513
Link: CVE-2023-39915
JSON object: View
Redhat Information
No data.