Buffer underflow in strongSwan - CVE-2018-5388
Published: May 26, 2018 / Updated: May 29, 2018
strongSwan
Detailed vulnerability description
The vulnerability allows a local attacker to cause DoS condition on the target system.
The vulnerability exists due to buffer underflow stroke_socket.c while improper checking of packet length. A local attacker can submit specially crafted packets, trigger resource exhaustion and cause the service to crash while reading from the socket.