CVE-2021-43114

FORT Validator versions prior to 1.5.2 will crash if an RPKI CA publishes an X.509 EE certificate. This will lead to RTR clients such as BGP routers to lose access to the RPKI VRP data set, effectively disabling Route Origin Validation.
Configurations

Configuration 1 (hide)

cpe:2.3:a:fort_validator_project:fort_validator:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

History

07 Dec 2023, 22:15

Type Values Removed Values Added
References
  • () https://github.com/NICMx/FORT-validator/commit/673c679b6bf3f4187cd5242c31a795bf8a6c22b3 -
  • () https://github.com/NICMx/FORT-validator/commit/425e0f4037b4543fe8044ac96ca71d6d02d7d8c5 -
  • () https://github.com/NICMx/FORT-validator/commit/eb68ebbaab50f3365aa51bbaa17cb862bf4607fa -
  • () https://github.com/NICMx/FORT-validator/commit/274dc14aed1eb9b3350029d1063578a6b9c77b54 -

12 Jul 2022, 17:42

Type Values Removed Values Added
CWE CWE-295 NVD-CWE-Other

31 Mar 2022, 16:28

Type Values Removed Values Added
CWE CWE-400 CWE-295
CPE cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*
References (DEBIAN) https://www.debian.org/security/2021/dsa-5033 - (DEBIAN) https://www.debian.org/security/2021/dsa-5033 - Third Party Advisory

31 Dec 2021, 15:15

Type Values Removed Values Added
References
  • (DEBIAN) https://www.debian.org/security/2021/dsa-5033 -

15 Nov 2021, 17:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 5.0
v3 : 7.5
CWE CWE-400
References (MISC) https://github.com/NICMx/FORT-validator/releases/tag/1.5.2 - (MISC) https://github.com/NICMx/FORT-validator/releases/tag/1.5.2 - Patch, Release Notes, Third Party Advisory
CPE cpe:2.3:a:fort_validator_project:fort_validator:*:*:*:*:*:*:*:*

09 Nov 2021, 13:38

Type Values Removed Values Added
New CVE

Information

Published : 2021-11-09 13:15

Updated : 2024-10-15 21:35


NVD link : CVE-2021-43114

Mitre link : CVE-2021-43114

CVE.ORG link : CVE-2021-43114


JSON object : View

Products Affected

fort_validator_project

  • fort_validator

debian

  • debian_linux