NULL pointer dereference in strongSwan - CVE-2026-35332
Published: September 22, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a null-pointer dereference in libtls server-side ECDH public-value processing when handling an empty ECDH public value in a TLS client_key_exchange message before TLS 1.3. A remote attacker can send a specially crafted TLS client_key_exchange message to cause a denial of service.
The crash occurs when the TLS record ends immediately after the length byte for the empty public value.
Affected software
Debian Linux
Fedora
strongswan (Debian package)
strongswan
How to mitigate CVE-2026-35332
strongswan (Debian package) - addressed in versions 5.9.8-5+deb12u4, 6.0.1-6+deb13u5
strongswan - addressed in versions 6.0.6-1.el8, 6.0.6-1.el9, 6.0.6-1.el10_3, 6.0.6-2.fc44, 6.0.6-3.fc43, 6.0.7-2.fc43