CVE-2020-20213: Medium severity mikrotik routeros vulnerability
Published Jul 7, 2021
·Updated
Mikrotik RouterOs 6.44.5 (long-term tree) suffers from an stack exhaustion vulnerability in the /nova/bin/net process. An authenticated remote attacker can cause a Denial of Service due to overloading the systems CPU.
Affected Software
1 affected component
Mikrotik RouterOS=6.44.5
Event History
Jul 7, 2021
CVE Published
via MITRE·01:28 PM
Data Sourced
via MITRE·01:28 PM
Description
Frequently Asked Questions
1
What is CVE-2020-20213?
CVE-2020-20213 is a stack exhaustion vulnerability in Mikrotik RouterOs 6.44.5.
2
What is the severity of CVE-2020-20213?
The severity of CVE-2020-20213 is medium.
3
How does CVE-2020-20213 affect Mikrotik RouterOs?
CVE-2020-20213 can cause a Denial of Service by overloading the system's CPU.
4
How can an attacker exploit CVE-2020-20213?
An authenticated remote attacker can exploit CVE-2020-20213 to launch a Denial of Service attack.
5
Is there a fix available for CVE-2020-20213?
It is recommended to update to a version of Mikrotik RouterOs that is not affected by CVE-2020-20213.