NLnet Labs Routinator
cpe:2.3:a:nlnetlabs:routinator:*:*:*:*:*:*:*
- <= 0.15.1
A denial-of-service vulnerability has been identified in Routinator versions prior to and including 0.15.1. When a specifically crafted non-UTF-8 string is sent as the select-asn query parameter to the /api/v1/origins endpoint, Routinator crashes. This issue only affects users who permit API access from untrusted networks.
Exploitation of this vulnerability causes Routinator to crash, disrupting service.
Users are advised to upgrade to Routinator version 0.15.2 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.