Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The ASN.1 parser in strongSwan before 5.5.3 improperly handles CHOICE types when the x509 plugin is enabled, which allows remote attackers to cause a denial of service (infinite loop) via a crafted certificate.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
strongSwan ASN.1解析器安全漏洞
Vulnerability Description
strongSwan是瑞士Andreas Steffen软件开发者的一套Linux平台使用的开源的基于IPsec的VPN解决方案。该方案包含X.509公开密钥证书、安全储存私钥、智能卡等认证机制。 strongSwan 5.5.3之前的版本中的ASN.1解析器存在安全漏洞,该漏洞源于在x509插件启动时,程序没有正确处理CHOICE类型。远程攻击者可利用该漏洞造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A