Описание
The rsa_pss_params_parse function in libstrongswan/credentials/keys/signature_params.c in strongSwan 5.6.1 allows remote attackers to cause a denial of service via a crafted RSASSA-PSS signature that lacks a mask generation function parameter.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | code not present |
| devel | released | 5.6.1-2ubuntu4 |
| esm-infra-legacy/trusty | not-affected | code not present |
| esm-infra/xenial | not-affected | code not present |
| precise/esm | DNE | |
| trusty | not-affected | code not present |
| trusty/esm | not-affected | code not present |
| upstream | released | 5.6.2 |
| xenial | not-affected | code not present |
Показывать по
5 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
The rsa_pss_params_parse function in libstrongswan/credentials/keys/signature_params.c in strongSwan 5.6.1 allows remote attackers to cause a denial of service via a crafted RSASSA-PSS signature that lacks a mask generation function parameter.
The rsa_pss_params_parse function in libstrongswan/credentials/keys/signature_params.c in strongSwan 5.6.1 allows remote attackers to cause a denial of service via a crafted RSASSA-PSS signature that lacks a mask generation function parameter.
The rsa_pss_params_parse function in libstrongswan/credentials/keys/si ...
5 Medium
CVSS2
5.3 Medium
CVSS3