First published: Wed Jul 07 2021(Updated: )
Mikrotik RouterOs 6.44.5 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/console process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik RouterOS | =6.44.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-20212 is a memory corruption vulnerability in the Mikrotik RouterOs 6.44.5 (long-term tree) /nova/bin/console process.
CVE-2020-20212 in MikroTik RouterOS 6.44.5 (long-term tree) can be exploited by an authenticated remote attacker to cause a Denial of Service (NULL pointer dereference).
The severity of CVE-2020-20212 is medium with a severity value of 6.5.
To fix CVE-2020-20212, it is recommended to update MikroTik RouterOS to a version that is not affected.
More information about CVE-2020-20212 can be found at the following references: [1] http://seclists.org/fulldisclosure/2021/May/0 [2] https://mikrotik.com/