Количество 13
Количество 13
CVE-2021-41991
The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility.
CVE-2021-41991
The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility.
CVE-2021-41991
The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility.
CVE-2021-41991
The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator but this is not done correctly. Remote code execution might be a slight possibility.
CVE-2021-41991
The in-memory certificate cache in strongSwan before 5.9.4 has a remot ...
SUSE-SU-2021:3468-1
Security update for strongswan
SUSE-SU-2021:14827-1
Security update for strongswan
GHSA-jpr7-w98h-cvgm
The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility.
BDU:2023-02802
Уязвимость демона strongSwan, вызванная целочисленным переполнением (при условии, что кэш сертификатов в памяти полон), позволяющая нарушителю вызвать отказ в обслуживании
openSUSE-SU-2021:3467-1
Security update for strongswan
openSUSE-SU-2021:1399-1
Security update for strongswan
SUSE-SU-2021:3469-1
Security update for strongswan
SUSE-SU-2021:3467-1
Security update for strongswan
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-41991 The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility. | CVSS3: 7.5 | 2% Низкий | больше 4 лет назад | |
CVE-2021-41991 The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility. | CVSS3: 7.5 | 2% Низкий | больше 4 лет назад | |
CVE-2021-41991 The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility. | CVSS3: 7.5 | 2% Низкий | больше 4 лет назад | |
CVE-2021-41991 The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator but this is not done correctly. Remote code execution might be a slight possibility. | CVSS3: 7.5 | 2% Низкий | больше 4 лет назад | |
CVE-2021-41991 The in-memory certificate cache in strongSwan before 5.9.4 has a remot ... | CVSS3: 7.5 | 2% Низкий | больше 4 лет назад | |
SUSE-SU-2021:3468-1 Security update for strongswan | 2% Низкий | больше 4 лет назад | ||
SUSE-SU-2021:14827-1 Security update for strongswan | 2% Низкий | больше 4 лет назад | ||
GHSA-jpr7-w98h-cvgm The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility. | CVSS3: 7.5 | 2% Низкий | больше 3 лет назад | |
BDU:2023-02802 Уязвимость демона strongSwan, вызванная целочисленным переполнением (при условии, что кэш сертификатов в памяти полон), позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 7.5 | 2% Низкий | больше 4 лет назад | |
openSUSE-SU-2021:3467-1 Security update for strongswan | больше 4 лет назад | |||
openSUSE-SU-2021:1399-1 Security update for strongswan | больше 4 лет назад | |||
SUSE-SU-2021:3469-1 Security update for strongswan | больше 4 лет назад | |||
SUSE-SU-2021:3467-1 Security update for strongswan | больше 4 лет назад |
Уязвимостей на страницу