CVE-2010-2628

CVE-2010-2628

CVE-2010-2628 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

The IKE daemon in strongSwan 4.3.x before 4.3.7 and 4.4.x before 4.4.1 does not properly check the return values of snprintf calls, which allows remote attackers to execute arbitrary code via crafted (1) certificate or (2) identity data that triggers buffer overflows.

Learn more about our Web Application Penetration Testing UK.