All 9 CVE vulnerabilities found in Routinator, with AI-generated Chinese analysis, references, and POCs.
Vendor: NLnet Labs
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-0638 | Routinator crashes when illegal characters are present in manifest file names CWE-1286 | 7.5 | High | 2025-01-22 |
| CVE-2024-1622 | Routinator terminates when RTR connection is reset too quickly after opening CWE-253 | 7.5 | High | 2024-02-26 |
| CVE-2023-39916 | Possible path traversal when storing RRDP responses CWE-35 | 9.3 | Critical | 2023-09-13 |
| CVE-2023-39915 | Crashes on parsing certain invalid RPKI objects CWE-232 | 7.5 | High | 2023-09-13 |
| CVE-2022-3029 | Fatal error on incorrect base64 data in RRDP CWE-241 | 7.5 | - | 2022-09-13 |
| CVE-2021-43174 | gzip transfer encoding caused out-of-memory crash CWE-1325 | 7.5 | - | 2021-11-09 |
| CVE-2021-43173 | Hanging RRDP request CWE-755 | 7.5 | - | 2021-11-09 |
| CVE-2021-43172 | Infinite length chain of RRDP repositories CWE-674 | 7.5 | - | 2021-11-09 |
| CVE-2021-41531 | Invalid RPKI data could disable Route Origin Validation on RTR clients. CWE-1288 | 7.5 | - | 2021-09-21 |
All 9 known CVE vulnerabilities affecting Routinator with full Chinese analysis, references, and POCs where available.