CVE-2020-20237: Medium severity mikrotik routeros vulnerability
Published May 18, 2021
·Updated
Mikrotik RouterOs 6.46.3 (stable tree) suffers from a memory corruption vulnerability in the /nova/bin/sniffer process. An authenticated remote attacker can cause a Denial of Service due to improper memory access.
Affected Software
1 affected component
Mikrotik RouterOS=6.46.3
Event History
May 18, 2021
CVE Published
via MITRE·06:22 PM
Data Sourced
via MITRE·06:22 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-20237.
2
What is the severity of CVE-2020-20237?
The severity of CVE-2020-20237 is medium.
3
Which software versions are affected by CVE-2020-20237?
Mikrotik RouterOs 6.46.3 (stable tree) is affected by CVE-2020-20237.
4
What is the impact of CVE-2020-20237?
CVE-2020-20237 allows an authenticated remote attacker to cause a Denial of Service due to improper memory access.
5
How can I fix CVE-2020-20237?
To fix CVE-2020-20237, update Mikrotik RouterOs to a version higher than 6.46.3.