cve/2023/CVE-2023-41913.md
2024-05-25 21:48:12 +02:00

733 B

CVE-2023-41913

Description

strongSwan before 5.9.12 has a buffer overflow and possible unauthenticated remote code execution via a DH public value that exceeds the internal buffer in charon-tkm's DH proxy. The earliest affected version is 5.3.0. An attack can occur via a crafted IKE_SA_INIT message.

POC

Reference

No PoCs from references.

Github