CVE Database
/

CVE-2017-9022

Back to search

CVE-2017-9022

Published: Jun 8, 2017

Modified: Dec 3, 2025

PUBLISHED

Description

The gmp plugin in strongSwan before 5.5.3 does not properly validate RSA public keys before calling mpz_powm_sec, which allows remote peers to cause a denial of service (floating point exception and process crash) via a crafted certificate.

VendorProductVersions

n/a

n/a

affected
n/a

References

DSA-3866
vendor-advisory
x_refsource_DEBIAN
98760
vdb-entry
x_refsource_BID
USN-3301-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now