Home
HIGH: 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:LDefault status
affected
0.15.2 (semver) before *
unaffected
Description
When Routinator encounters a file via RRDP using a specifically crafted Document Type Definition, Routinator crashes.
Problem types
CWE-755 Improper Handling of Exceptional Conditions
Product status
0.15.2 (semver) before *
Timeline
| 2026-03-28: | Issue reported |
| 2026-06-08: | Fixes released |
Credits
X41 D-Sec GmbH
References
www.nlnetlabs.nl/downloads/routinator/CVE-2026-49235.txt