VYPR
High severity7.4NVD Advisory· Published Aug 5, 2020· Updated Jun 17, 2026

CVE-2020-17366

CVE-2020-17366

Description

An issue was discovered in NLnet Labs Routinator 0.1.0 through 0.7.1. It allows remote attackers to bypass intended access restrictions or to cause a denial of service on dependent routing systems by strategically withholding RPKI Route Origin Authorisation ".roa" files or X509 Certificate Revocation List files from the RPKI relying party's view.

Affected products

3
  • Nlnetlabs/Routinatorllm-fuzzy2 versions
    0.1.0 - 0.7.1+ 1 more
    • (no CPE)range: 0.1.0 - 0.7.1
    • cpe:2.3:a:nlnetlabs:routinator:*:*:*:*:*:*:*:*range: >=0.1.0,<=0.7.1
  • NLnet Labs/Routinatordescription

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.