High severity7.4NVD Advisory· Published Aug 5, 2020· Updated Jun 17, 2026
CVE-2020-17366
CVE-2020-17366
Description
An issue was discovered in NLnet Labs Routinator 0.1.0 through 0.7.1. It allows remote attackers to bypass intended access restrictions or to cause a denial of service on dependent routing systems by strategically withholding RPKI Route Origin Authorisation ".roa" files or X509 Certificate Revocation List files from the RPKI relying party's view.
Affected products
30.1.0 - 0.7.1+ 1 more
- (no CPE)range: 0.1.0 - 0.7.1
- cpe:2.3:a:nlnetlabs:routinator:*:*:*:*:*:*:*:*range: >=0.1.0,<=0.7.1
- NLnet Labs/Routinatordescription
Patches
Vulnerability mechanics
References
2- github.com/NLnetLabs/routinator/issues/319nvdExploitIssue TrackingThird Party Advisory
- github.com/NLnetLabs/routinator/releases/tag/v0.8.0nvdRelease NotesThird Party Advisory
News mentions
0No linked articles in our index yet.