First published: Mon Jul 19 2021(Updated: )
Mikrotik RouterOs before stable 6.47 suffers from a memory corruption vulnerability in the resolver process. By sending a crafted packet, an authenticated remote attacker can cause a Denial of Service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik RouterOS | <6.47 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-20249 refers to a memory corruption vulnerability in the resolver process of Mikrotik RouterOS before version 6.47.
CVE-2020-20249 can cause a Denial of Service (DoS) on Mikrotik RouterOS if an authenticated remote attacker sends a crafted packet.
CVE-2020-20249 has a severity rating of medium (6.5).
To fix CVE-2020-20249, users should update Mikrotik RouterOS to version 6.47 or later.
More information about CVE-2020-20249 can be found at the following link: https://github.com/cq674350529/pocs_slides/blob/master/advisory/MikroTik/CVE-2020-20249/README.md