OctoRPKI crashes when encountering a repository that returns an invalid ROA (just an encoded NUL (\0) character).
References
Link | Resource |
---|---|
https://github.com/cloudflare/cfrpki/security/advisories/GHSA-5mxh-2qfv-4g7j | Third Party Advisory |
https://www.debian.org/security/2022/dsa-5041 | Third Party Advisory |
Information
Published : 2021-11-11 14:15
Updated : 2022-04-04 07:02
NVD link : CVE-2021-3910
Mitre link : CVE-2021-3910
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
debian
- debian_linux
cloudflare
- octorpki