Description
An issue was discovered in RIPE NCC RPKI Validator 3.x through 3.1-2020.07.06.14.28. It allows remote attackers to bypass intended access restrictions or to cause a denial of service on dependent routing systems by strategically withholding RPKI Route Origin Authorisation ".roa" files or X509 Certificate Revocation List files from the RPKI relying party's view. NOTE: some third parties may regard this as a preferred behavior, not a vulnerability
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T13:37:54.170Z
Reserved: 2020-07-30T00:00:00.000Z
Link: CVE-2020-16164
No data.
Status : Modified
Published: 2020-07-30T16:15:11.943
Modified: 2024-11-21T05:06:53.287
Link: CVE-2020-16164
No data.
OpenCVE Enrichment
No data.
Weaknesses