Strongswan
Strongswan: vulnerabilidades y CVE
Strongswan tiene 52 vulnerabilidades publicadas, 14 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE52
Últimos 12 meses14
Críticas4
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-78135 | Alta (7.3) | 0.36% | — | 11 sept 2026 | libcharon in strongSwan 5.9.7 through 6.0.7 mishandles behavioral workflow in the IKEv2 state machine. Because CREATE_CHILD_SA requests are mishandled, there can be an authentication bypass. |
| CVE-2026-78134 | Alta (7.1) | 0.32% | — | 11 sept 2026 | strongSwan 4.5.0 through 6.0.7 has Incorrect Access Control in the eap-ttls and eap-peap plugins because there can be a missing or mismatched inner EAP identity. |
| CVE-2026-78133 | Alta (7.5) | 0.43% | — | 11 sept 2026 | libcharon in strongSwan 6.0.0 through 6.0.7 has a use-after-free in IKEv2 rekeying collision handling. |
| CVE-2026-78132 | Alta (7.5) | 0.32% | — | 11 sept 2026 | strongSwan 5.1.3 through 6.0.7 has an infinite loop in the x509 plugin's attribute certificate parser for ietfAttrSyntax. |
| CVE-2026-78131 | Baja (3.7) | 0.23% | — | 11 sept 2026 | strongSwan 4.2.0 through 6.0.7 has a missing release of memory after its effective lifetime in the x509 plugin's attribute certificate parser. |
| CVE-2026-78130 | Alta (7.5) | 0.32% | — | 11 sept 2026 | strongSwan 4.2.0 through 6.0.7 has a NULL pointer dereference in the x509 plugin's attribute certificate parser. |
| CVE-2026-78129 | Media (5.9) | 0.41% | — | 11 sept 2026 | strongSwan 4.6.2 through 6.0.7 has an infinite loop in PKCS#5 decryption. |
| CVE-2026-78127 | Baja (3.7) | 0.35% | — | 11 sept 2026 | libcharon in strongSwan 4.1.2 through 6.0.7 has a missing release of memory after its effective lifetime in the IKE message parser. |
| CVE-2026-78126 | Media (5.9) | 0.41% | — | 11 sept 2026 | strongSwan 4.1.10 through 6.0.7 allows a NULL pointer dereference in the eap-aka plugin. |
| CVE-2026-78124 | Baja (3.7) | 0.19% | — | 11 sept 2026 | strongSwan 5.0.2 through 6.0.7 allows PKCS#7 certificate enumeration in the openssl plugin that leads to a lack of release of memory after its effective lifetime. |
| CVE-2026-78123 | Media (5.9) | 0.41% | — | 11 sept 2026 | strongSwan 5.0.2 through 6.0.7 has an Expired Pointer Dereference in PKCS#7 parsing in the openssl plugin. |
| CVE-2026-47895 | Alta (7.5) | 0.42% | — | 22 ago 2026 | In strongSwan before 6.0.7, identity parsing/cloning is mishandled. Parsed EAP-Identities that result in an empty but non-NULL encoding are not correctly cloned and trigger a double-free once the duplicates are… |
| CVE-2026-25075 | Alta (8.7) | 1.0% | — | 23 mar 2026 | strongSwan versions 4.5.0 prior to 6.0.5 contain an integer underflow vulnerability in the EAP-TTLS AVP parser that allows unauthenticated remote attackers to cause a denial of service by sending crafted AVP data with… |
| CVE-2025-62291 | Alta (8.1) | 1.00% | — | 16 ene 2026 | In the eap-mschapv2 plugin (client-side) in strongSwan before 6.0.3, a malicious EAP-MSCHAPv2 server can send a crafted message of size 6 through 8, and cause an integer underflow that potentially results in a… |
| CVE-2025-8763 | Media (6.3) | 0.15% | — | 9 ago 2025 | A vulnerability was found in Ruijie EG306MG 3.0(1)B11P309. It has been rated as problematic. This issue affects some unknown processing of the file /etc/strongswan.conf of the component strongSwan. The manipulation of… |
| CVE-2022-4967 | Media (6.5) | 0.47% | — | 14 may 2024 | strongSwan versions 5.9.2 through 5.9.5 are affected by authorization bypass through improper validation of certificate with host mismatch (CWE-297). When certificates are used to authenticate clients in TLS-based EAP… |
| CVE-2023-41913 | Crítica (9.8) | 2.3% | — | 7 dic 2023 | strongSwan before 5.9.12 has a buffer overflow and possible unauthenticated remote code execution via a DH public value that exceeds the internal buffer in charon-tkm's DH proxy. The earliest affected version is 5.3.0.… |
| CVE-2023-26463 | Crítica (9.8) | 2.3% | — | 15 abr 2023 | strongSwan 5.9.8 and 5.9.9 potentially allows remote code execution because it uses a variable named "public" for two different purposes within the same function. There is initially incorrect access control, later… |
| CVE-2022-40617 | Alta (7.5) | 1.7% | — | 31 oct 2022 | strongSwan before 5.9.8 allows remote attackers to cause a denial of service in the revocation plugin by sending a crafted end-entity (and intermediate CA) certificate that contains a CRL/OCSP URL that points to a… |
| CVE-2021-45079 | Crítica (9.1) | 2.8% | — | 31 ene 2022 | In strongSwan before 5.9.5, a malicious responder can send an EAP-Success message too early without actually authenticating the client and (in the case of EAP methods with mutual authentication and EAP-only… |
| CVE-2021-41991 | Alta (7.5) | 5.3% | — | 18 oct 2021 | The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The… |
| CVE-2021-41990 | Alta (7.5) | 6.7% | — | 18 oct 2021 | The gmp plugin in strongSwan before 5.9.4 has a remote integer overflow via a crafted certificate with an RSASSA-PSS signature. For example, this can be triggered by an unrelated self-signed CA certificate sent by an… |
| CVE-2019-10155 | Baja (3.1) | 0.50% | — | 12 jun 2019 | The Libreswan Project has found a vulnerability in the processing of IKEv1 informational exchange packets which are encrypted and integrity protected using the established IKE SA encryption and integrity keys, but as a… |
| CVE-2018-17540 | Alta (7.5) | 3.5% | — | 3 oct 2018 | The gmp plugin in strongSwan before 5.7.1 has a Buffer Overflow via a crafted certificate. |
| CVE-2018-16152 | Alta (7.5) | 1.9% | — | 26 sept 2018 | In verify_emsa_pkcs1_signature() in gmp_rsa_public_key.c in the gmp plugin in strongSwan 4.x and 5.x before 5.7.0, the RSA implementation based on GMP does not reject excess data in the digestAlgorithm.parameters field… |
| CVE-2018-16151 | Alta (7.5) | 1.9% | — | 26 sept 2018 | In verify_emsa_pkcs1_signature() in gmp_rsa_public_key.c in the gmp plugin in strongSwan 4.x and 5.x before 5.7.0, the RSA implementation based on GMP does not reject excess data after the encoded algorithm OID during… |
| CVE-2018-10811 | Alta (7.5) | 6.2% | — | 19 jun 2018 | strongSwan 5.6.0 and older allows Remote Denial of Service because of Missing Initialization of a Variable. |
| CVE-2018-5388 | Media (6.5) | 4.0% | — | 31 may 2018 | In stroke_socket.c in strongSwan before 5.6.3, a missing packet length check could allow a buffer underflow, which may lead to resource exhaustion and denial of service while reading from the socket. |
| CVE-2018-6459 | Media (5.3) | 1.0% | — | 20 feb 2018 | The rsa_pss_params_parse function in libstrongswan/credentials/keys/signature_params.c in strongSwan 5.6.1 allows remote attackers to cause a denial of service via a crafted RSASSA-PSS signature that lacks a mask… |
| CVE-2015-3991 | Crítica (9.8) | 4.6% | — | 7 sept 2017 | strongSwan 5.2.2 and 5.3.0 allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.