OctoRPKI crashes when encountering a repository that returns an invalid ROA (just an encoded NUL (\0) character).
Advisories
Source ID Title
Debian DSA Debian DSA DSA-5041-1 cfrpki security update
EUVD EUVD EUVD-2021-2304 OctoRPKI crashes when encountering a repository that returns an invalid ROA (just an encoded NUL (\0) character).
Github GHSA Github GHSA GHSA-5mxh-2qfv-4g7j NUL character in ROA causes OctoRPKI to crash
Fixes

Solution

Upgrade to 1.4


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: cloudflare

Published:

Updated: 2024-09-17T03:27:37.742Z

Reserved: 2021-10-26T00:00:00

Link: CVE-2021-3910

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2021-11-11T22:15:07.973

Modified: 2024-11-21T06:22:45.443

Link: CVE-2021-3910

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses