CVE-2017-9022

Publication date

2017-06-08 16:00:00

Family

mitre

State

PUBLISHED

Description

The gmp plugin in strongSwan before 5.5.3 does not properly validate RSA public keys before calling mpz_powm_sec, which allows remote peers to cause a denial of service (floating point exception and process crash) via a crafted certificate.