First published: Fri Aug 26 2022(Updated: )
Mikrotik RouterOs through stable v6.48.3 was discovered to contain an assertion failure in the component /advanced-tools/nova/bin/netwatch. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MikroTik RouterOS | <=6.48.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-36522 is a vulnerability discovered in Mikrotik RouterOs version up to and including 6.48.3 that allows attackers to cause a Denial of Service (DoS) via a crafted packet.
The severity of CVE-2022-36522 is medium with a CVSS score of 6.5.
CVE-2022-36522 affects Mikrotik RouterOs version up to and including 6.48.3 by causing a Denial of Service (DoS) through a crafted packet.
Yes, a fix is available for CVE-2022-36522. Users should update to a version of Mikrotik RouterOs that is not affected by this vulnerability.
More information about CVE-2022-36522 can be found in the advisory on GitHub and the disclosure on the Full Disclosure mailing list.