Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Fort before 1.6.3. A malicious RPKI repository that descends from a (trusted) Trust Anchor can serve (via rsync or RRDP) a signed object containing an empty signedAttributes field. Fort accesses the set's elements without sanitizing it first. Because Fort is an RPKI Relying Party, a crash can lead to Route Origin Validation unavailability, which can lead to compromised routing.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
FORT Validator 安全漏洞
Vulnerability Description
FORT Validator是NICMx开源的一个 RPKI 依赖方和 RTR 服务器。 FORT Validator 1.6.3之前版本存在安全漏洞,该漏洞源于访问集合的元素时不会先对其进行清理。
CVSS Information
N/A
Vulnerability Type
N/A