CVE-2017-17538: High severity Mikrotik Router Firmware vulnerability
Published Dec 13, 2017
·Updated
MikroTik v6.40.5 devices allow remote attackers to cause a denial of service via a flood of ICMP packets.
Affected Software
2 affected components
Mikrotik Router Firmware=6.40.5
Mikrotik router
Event History
Dec 13, 2017
CVE Published
via MITRE·09:00 AM
Data Sourced
via MITRE·09:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-17538?
CVE-2017-17538 is classified as a denial of service vulnerability.
2
How do I fix CVE-2017-17538?
To mitigate CVE-2017-17538, upgrade the MikroTik Router Firmware to the latest version beyond 6.40.5.
3
Which devices are affected by CVE-2017-17538?
CVE-2017-17538 affects MikroTik Router Firmware version 6.40.5.
4
What type of attack does CVE-2017-17538 facilitate?
CVE-2017-17538 allows remote attackers to execute a denial of service attack through ICMP packet flooding.
5
Can CVE-2017-17538 be exploited remotely?
Yes, CVE-2017-17538 can be exploited remotely by sending a flood of ICMP packets.