Mikrotik · Mikrotik Routeros · CVE-2023-24094
**Name of the Vulnerable Software and Affected Versions**
MikroTik RouterOS version 6.40.5
**Description**
The issue in the bridge2 component of MikroTik RouterOS is related to errors in resource release, which can be exploited by attackers to cause a Denial of Service (DoS) via crafted packets. This can be achieved by a remote attacker sending specially formed packets.
**Recommendations**
For MikroTik RouterOS version 6.40.5, consider disabling the bridge2 component as a temporary workaround until a patch is available. Restrict access to the bridge interface to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.