"value":"An issue was discovered in RIPE NCC RPKI Validator 3.x before 3.1-2020.07.06.14.28. RRDP fetches proceed even with a lack of validation of a TLS HTTPS endpoint. This allows remote attackers to bypass intended access restrictions, or to trigger denial of service to traffic directed to co-dependent routing systems. NOTE: third parties assert that the behavior is intentionally permitted by RFC 8182"
"value":"** EN DISPUTA ** Se detect\u00f3 un problema en RIPE NCC RPKI Validator versiones 3.x anteriores a 3.1-2020.07.06.14.28. Las recuperaciones de RRDP contin\u00faan incluso con una falta de comprobaci\u00f3n de un endpoint TLS HTTPS. Esto permite a atacantes remotos omitir las restricciones de acceso previstas o activar una denegaci\u00f3n de servicio al tr\u00e1fico dirigido a sistemas de enrutamiento codependientes. NOTA: terceros afirman que el comportamiento est\u00e1 permitido intencionalmente por RFC 8182"