📦 Routinator

by Nlnetlabs

🔍 What is Routinator?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-39916

CRITICAL CVSS 9.3 Sep 13, 2023

This vulnerability in Routinator allows attackers to write files outside the intended directory when the optional keep-rrdp-responses feature is enabled. By crafting malicious RRDP URLs, attackers can...

CVE-2024-1622

HIGH CVSS 7.5 Feb 26, 2024

Routinator versions 0.14.0 through 0.14.2 contain a vulnerability where the software will crash when an RTR (RPKI-to-Router) connection is reset by the peer too quickly after opening. This is due to i...

CVE-2021-43173

HIGH CVSS 7.5 Nov 9, 2021

CVE-2021-43173 is a denial-of-service vulnerability in NLnet Labs Routinator where malicious RRDP repositories can stall validation by slowly feeding data to keep connections alive. This causes Routin...

CVE-2021-41531

HIGH CVSS 7.5 Sep 21, 2021

Routinator versions before 0.10.0 produce invalid RTR payloads when processing ROAs with excessively large max-length values from RPKI CAs. This causes RTR clients like routers to reject RPKI data, di...