NLnet Labs Routinator
cpe:2.3:a:nlnetlabs:routinator:*:*:*:*:*:*:*
- <= 0.14.0
A denial-of-service vulnerability has been identified in Routinator versions prior to and including 0.14.0. The issue arises when non-ASCII characters in file names within an RPKI manifest are not properly validated. This oversight leads to a crash in Routinator, as later code segments assume the file names have been correctly checked and panic upon encountering illegal characters.
Exploitation of this vulnerability causes Routinator to crash, disrupting its operation.
Users are advised to upgrade to Routinator version 0.14.1 or newer.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.