Memory corruption in strongSwan - CVE-2018-6459
Published: March 2, 2018 / Updated: March 2, 2018
Vulnerability identifier: #VU10821
CSH Severity: Low
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-6459
CWE-ID: CWE-119
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote unauthenticated attacker to cause DoS condition on the target system.
The weakness exists in the rsa_pss_params_parse function due to improper processing of RSAASSA-PSS signatures. A remote attacker can submit a specially crafted signature, trigger memory corruption and cause the service to crash.
The weakness exists in the rsa_pss_params_parse function due to improper processing of RSAASSA-PSS signatures. A remote attacker can submit a specially crafted signature, trigger memory corruption and cause the service to crash.
Affected software
strongSwan
Gentoo Linux
Arch Linux
Opensuse
strongswan (Alpine package)
Gentoo Linux
Arch Linux
Opensuse
strongswan (Alpine package)
How to mitigate CVE-2018-6459
Update to version 5.6.2.
strongswan (Alpine package) - update to 5.6.2-r0