First published: Wed Jul 21 2021(Updated: )
Mikrotik RouterOs 6.44.6 (long-term tree) suffers from a memory corruption vulnerability in the /nova/bin/igmp-proxy process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik RouterOS | =6.44.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-20219 is a memory corruption vulnerability in the /nova/bin/igmp-proxy process of Mikrotik RouterOs 6.44.6 (long-term tree) that can be exploited by an authenticated remote attacker to cause a Denial of Service (NULL pointer dereference).
CVE-2020-20219 has a severity rating of 6.5 (medium).
Mikrotik RouterOs 6.44.6 (long-term tree) is affected by CVE-2020-20219.
An authenticated remote attacker can exploit CVE-2020-20219 by manipulating the /nova/bin/igmp-proxy process, causing a Denial of Service (NULL pointer dereference).
Yes, you can find more information about CVE-2020-20219 at the following references: [MikroTik website](https://mikrotik.com/) and [Full Disclosure mailing list](https://seclists.org/fulldisclosure/2021/May/2).