vulnerability

Ubuntu: USN-3301-1 (CVE-2017-9022): strongSwan vulnerabilities

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
May 30, 2017
Added
May 30, 2017
Modified
Apr 25, 2025

Description

It was discovered that the strongSwan gmp plugin incorrectly validated RSA
public keys. A remote attacker could use this issue to cause strongSwan to
crash, resulting in a denial of service. (CVE-2017-9022)

It was discovered that strongSwan incorrectly parsed ASN.1 CHOICE types. A
remote attacker could use this issue to cause strongSwan to hang, resulting
in a denial of service. (CVE-2017-9023)

Solution(s)

ubuntu-upgrade-libstrongswanubuntu-upgrade-strongswanubuntu-upgrade-strongswan-plugin-gmp
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.