CVE-2020-20218

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
03/05/2021
Last modified:
03/05/2022

Description

Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/traceroute process. An authenticated remote attacker can cause a Denial of Service due via the loop counter variable.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:mikrotik:routeros:6.44.6:*:*:*:ltr:*:*:*