First published: Mon Oct 18 2021(Updated: )
The in-memory certificate cache in strongSwan before 5.9.4 has a remote integer overflow upon receiving many requests with different certificates to fill the cache and later trigger the replacement of cache entries. The code attempts to select a less-often-used cache entry by means of a random number generator, but this is not done correctly. Remote code execution might be a slight possibility.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/strongswan | 5.7.2-1+deb10u2 5.7.2-1+deb10u3 5.9.1-1+deb11u3 5.9.8-5 5.9.11-1 | |
strongSwan | >=4.2.10<5.9.4 | |
Debian Debian Linux | =9.0 | |
Debian Debian Linux | =10.0 | |
Debian Debian Linux | =11.0 | |
Fedoraproject Fedora | =33 | |
Fedoraproject Fedora | =34 | |
Fedoraproject Fedora | =35 | |
Siemens SINEMA Remote Connect | ||
All of | ||
siemens siplus et 200sp cp 1542sp-1 irc tx rail firmware | ||
siemens siplus et 200sp cp 1542sp-1 irc tx rail | ||
All of | ||
siemens simatic cp 1243-1 firmware | ||
siemens simatic cp 1243-1 | ||
All of | ||
siemens simatic cp 1242-7 gprs v2 firmware | ||
Siemens Simatic CP 1242-7 GPRS Firmware | ||
All of | ||
Siemens SIMATIC CP 1243-8 IRC Firmware | ||
Siemens Simatic Net CP 1243-8 IRC Firmware | ||
All of | ||
Siemens Scalance SC632-2C Firmware | ||
Siemens Scalance SC632-2C | ||
All of | ||
siemens siplus et 200sp cp 1543sp-1 isec firmware | ||
siemens siplus et 200sp cp 1543sp-1 isec | ||
All of | ||
Siemens CP 1543-1 | ||
Siemens CP 1543-1 | ||
All of | ||
siemens simatic net cp 1545-1 firmware | ||
siemens simatic net cp 1545-1 | ||
All of | ||
siemens simatic cp 1543sp-1 firmware | ||
siemens simatic cp 1543sp-1 | ||
All of | ||
siemens simatic net cp1243-7 lte eu firmware | ||
siemens simatic net cp1243-7 lte eu | ||
All of | ||
siemens simatic cp 1243-7 lte\/us firmware | ||
siemens simatic cp 1243-7 lte\/us | ||
All of | ||
siemens simatic cp 1542sp-1 firmware | ||
Siemens Simatic Net CP 1542SP-1 Firmware | ||
All of | ||
Siemens Scalance SC636-2C | ||
Siemens Scalance SC636-2C | ||
All of | ||
siemens simatic cp 1542sp-1 irc firmware | ||
siemens simatic cp 1542sp-1 irc | ||
All of | ||
Siemens Scalance SC642-2C | ||
Siemens Scalance SC642-2C Firmware | ||
All of | ||
Siemens Scalance SC646-2C Firmware | <2.3 | |
siemens scalance sc646-2c firmware | ||
All of | ||
Siemens Scalance SC622-2C Firmware | ||
Siemens Scalance SC622-2C | ||
All of | ||
siemens siplus s7-1200 cp 1243-1 rail firmware | ||
siemens siplus s7-1200 cp 1243-1 rail | ||
All of | ||
siemens siplus s7-1200 cp 1243-1 firmware | ||
siemens siplus s7-1200 cp 1243-1 | ||
All of | ||
siemens siplus net cp 1543-1 firmware | ||
siemens siplus net cp 1543-1 | ||
All of | ||
siemens siplus et 200sp cp 1543sp-1 isec tx rail firmware | ||
siemens siplus et 200sp cp 1543sp-1 isec tx rail | ||
siemens siplus et 200sp cp 1542sp-1 irc tx rail firmware | ||
siemens siplus et 200sp cp 1542sp-1 irc tx rail | ||
siemens simatic cp 1243-1 firmware | ||
siemens simatic cp 1243-1 | ||
siemens simatic cp 1242-7 gprs v2 firmware | ||
Siemens Simatic CP 1242-7 GPRS Firmware | ||
Siemens SIMATIC CP 1243-8 IRC Firmware | ||
Siemens Simatic Net CP 1243-8 IRC Firmware | ||
Siemens Scalance SC632-2C Firmware | ||
Siemens Scalance SC632-2C | ||
siemens siplus et 200sp cp 1543sp-1 isec firmware | ||
siemens siplus et 200sp cp 1543sp-1 isec | ||
Siemens CP 1543-1 | ||
Siemens CP 1543-1 | ||
siemens simatic net cp 1545-1 firmware | ||
siemens simatic net cp 1545-1 | ||
siemens simatic cp 1543sp-1 firmware | ||
siemens simatic cp 1543sp-1 | ||
siemens simatic net cp1243-7 lte eu firmware | ||
siemens simatic net cp1243-7 lte eu | ||
siemens simatic cp 1243-7 lte\/us firmware | ||
siemens simatic cp 1243-7 lte\/us | ||
siemens simatic cp 1542sp-1 firmware | ||
Siemens Simatic Net CP 1542SP-1 Firmware | ||
Siemens Scalance SC636-2C | ||
Siemens Scalance SC636-2C | ||
siemens simatic cp 1542sp-1 irc firmware | ||
siemens simatic cp 1542sp-1 irc | ||
Siemens Scalance SC642-2C | ||
Siemens Scalance SC642-2C Firmware | ||
Siemens Scalance SC646-2C Firmware | <2.3 | |
siemens scalance sc646-2c firmware | ||
Siemens Scalance SC622-2C Firmware | ||
Siemens Scalance SC622-2C | ||
siemens siplus s7-1200 cp 1243-1 rail firmware | ||
siemens siplus s7-1200 cp 1243-1 rail | ||
siemens siplus s7-1200 cp 1243-1 firmware | ||
siemens siplus s7-1200 cp 1243-1 | ||
siemens siplus net cp 1543-1 firmware | ||
siemens siplus net cp 1543-1 | ||
siemens siplus et 200sp cp 1543sp-1 isec tx rail firmware | ||
siemens siplus et 200sp cp 1543sp-1 isec tx rail |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2021-41991.
The severity level of CVE-2021-41991 is high.
Versions of strongSwan before 5.9.4 are affected by CVE-2021-41991.
To fix CVE-2021-41991, upgrade to strongSwan version 5.9.4 or later.
You can find more information about CVE-2021-41991 in the following references: [Link 1](https://cert-portal.siemens.com/productcert/pdf/ssa-539476.pdf), [Link 2](https://github.com/strongswan/strongswan/releases/tag/5.9.4), [Link 3](https://lists.debian.org/debian-lts-announce/2021/10/msg00014.html).