Crashes on parsing certain invalid RPKI objects
CVE-2023-39915
7.5HIGH
What is CVE-2023-39915?
Routinator, an RPKI validator by NLnet Labs, may experience crashes when processing malformed RPKI objects due to insufficient input validation in the underlying bcder library. This vulnerability could lead to service disruptions, as the application is unable to handle unexpected input effectively. Users are urged to update to the latest version to mitigate this risk.
Affected Version(s)
Routinator * < 0.12.2
Routinator 0.12.2
