📦 Octorpki

by Cloudflare

🔍 What is Octorpki?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-3978

HIGH CVSS 7.5 Jan 29, 2025

CVE-2021-3978 is a local privilege escalation vulnerability in Cloudflare's octorpki RPKI validator. When combined with another vulnerability that allows processing malicious TAL files, attackers coul...

CVE-2021-3907

HIGH CVSS 7.4 Nov 11, 2021

OctoRPKI has a path traversal vulnerability where malicious repositories can write files outside the designated cache directory using '..' sequences in URIs. This allows attackers to potentially achie...

CVE-2021-3761

HIGH CVSS 7.5 Sep 9, 2021

This vulnerability allows any Certificate Authority (CA) issuer in the Resource Public Key Infrastructure (RPKI) to trick OctoRPKI versions prior to 1.3.0 into emitting invalid MaxLength values in Val...