CVE-2012-2388
EPSS 0.69%strongswan - authentication bypass
Published: 6/27/2012Modified: 4/28/2026
Description
The GMP Plugin in strongSwan 4.2.0 through 4.6.3 allows remote attackers to bypass authentication via a (1) empty or (2) zeroed RSA signature, aka "RSA signature verification vulnerability."
Affected packages (2)
- Debian/strongswanfrom 0, < 4.5.2-1.4
- Debian/strongswanfrom 0, < 4.4.1-5.2