CVE-2021-43114

Description

FORT Validator versions prior to 1.5.2 will crash if an RPKI CA publishes an X.509 EE certificate. This will lead to RTR clients such as BGP routers to lose access to the RPKI VRP data set, effectively disabling Route Origin Validation.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.566

Associated Vulnerability

VulnerabilityOS Platform
fort-validator security update(DSA-5033-1) fort-validator_1.5.3-1~deb11u1_amd64.debLinux
fort-validator security update(DSA-5033-1) fort-validator_1.5.3-1~deb11u1_i386.debLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234