strongSwan 'is_asn1()' Function Denial of Service Vulnerability
BID:61564
Info
strongSwan 'is_asn1()' Function Denial of Service Vulnerability
| Bugtraq ID: | 61564 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2013-5018 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 01 2013 12:00AM |
| Updated: | Nov 03 2015 06:46PM |
| Credit: | Ewan Smythe |
| Vulnerable: |
Gentoo Linux |
| Not Vulnerable: | |
Discussion
strongSwan 'is_asn1()' Function Denial of Service Vulnerability
strongSwan is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause an application to crash, denying service to legitimate users.
strongSwan 5.0.3 and 5.0.4 are vulnerable; other versions may also be affected.
strongSwan is prone to a remote denial-of-service vulnerability.
An attacker can exploit this issue to cause an application to crash, denying service to legitimate users.
strongSwan 5.0.3 and 5.0.4 are vulnerable; other versions may also be affected.
Exploit / POC
strongSwan 'is_asn1()' Function Denial of Service Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
strongSwan 'is_asn1()' Function Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
strongSwan 'is_asn1()' Function Denial of Service Vulnerability
References:
References:
- strongSwan Homepage (strongSwan)