CVE-2013-6075

Source
https://cve.org/CVERecord?id=CVE-2013-6075
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2013-6075.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2013-6075
Downstream
Related
Withdrawn
2026-01-27T04:11:47.910837Z
Published
2013-11-02T18:55:03Z
Modified
2026-01-27T04:11:47.910837Z
Summary
[none]
Details

The comparedn function in utils/identification.c in strongSwan 4.3.3 through 5.1.1 allows (1) remote attackers to cause a denial of service (out-of-bounds read, NULL pointer dereference, and daemon crash) or (2) remote authenticated users to impersonate arbitrary users and bypass access restrictions via a crafted IDDERASN1DN ID, related to an "insufficient length check" during identity comparison.

References

Affected packages