FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

strongSwan -- vulnerability in charon-tkm

Affected packages
5.3.0 <= strongswan < 5.9.11_3

Details

VuXML ID a62c0c50-8aa0-11ee-ac0d-00e0670f2660
Discovery 2023-11-20
Entry 2023-11-24

strongSwan reports:

A vulnerability in charon-tkm related to processing DH public values was discovered in strongSwan that can result in a buffer overflow and potentially remote code execution. All versions since 5.3.0 are affected.

References

CVE Name CVE-2023-41913
URL https://www.strongswan.org/blog/2023/11/20/strongswan-vulnerability-(cve-2023-41913).html