CVE-2026-49232

Routinator exits on any error when accepting incoming HTTP or RTR connections, including ones it can recover from such as running out of file descriptors. This condition can be triggered maliciously by an attacker by opening a large number of connections to the HTTP or RTR server. This only affects users that make their HTTP or RTR server available to untrusted networks.
CVSS

No CVSS.

Configurations

No configuration.

History

23 Jul 2026, 07:10

Type Values Removed Values Added
Summary
  • (es) Routinator termina ante cualquier error al aceptar conexiones HTTP o RTR entrantes, incluyendo aquellos de los que podría recuperarse, como quedarse sin descriptores de archivo. Esta condición puede ser provocada maliciosamente por un atacante al abrir un gran número de conexiones al servidor HTTP o RTR. Esto solo afecta a los usuarios que exponen su servidor HTTP o RTR a redes no confiables.

08 Jun 2026, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-08 15:16

Updated : 2026-07-23 07:10


NVD link : CVE-2026-49232

Mitre link : CVE-2026-49232

CVE.ORG link : CVE-2026-49232


JSON object : View

Products Affected

No product.

CWE
CWE-755

Improper Handling of Exceptional Conditions