CVE-2021-41990

HIGHCVSS 7.5/10EPSS 6.44%

Last modified

CVE-2021-41990 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. The gmp plugin in strongSwan before 5.9.4 has a remote integer overflow via a crafted certificate with an RSASSA-PSS signature. For example, this can be triggered by an unrelated self-signed CA certificate sent by an initiator. EPSS estimates a 6.44% chance of exploitation in the next 30 days.

Description

The gmp plugin in strongSwan before 5.9.4 has a remote integer overflow via a crafted certificate with an RSASSA-PSS signature. For example, this can be triggered by an unrelated self-signed CA certificate sent by an initiator. Remote code execution cannot occur.

Metrics

CVSS 3.1
7.5/10

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Probability
6.44%

92.8th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
StrongswanStrongswan>= 5.6.1, < 5.9.4
DebianDebian Linux10.0
DebianDebian Linux11.0
FedoraprojectFedora33
FedoraprojectFedora34
FedoraprojectFedora35
Siemens6gk6108-4am00-2ba2 FirmwareAll versions
Siemens6gk6108-4am00-2da2 FirmwareAll versions
Siemens6gk5804-0ap00-2aa2 FirmwareAll versions
Siemens6gk5812-1aa00-2aa2 FirmwareAll versions
Siemens6gk5812-1ba00-2aa2 FirmwareAll versions
Siemens6gk5816-1aa00-2aa2 FirmwareAll versions
Siemens6gk5816-1ba00-2aa2 FirmwareAll versions
Siemens6gk5826-2ab00-2ab2 FirmwareAll versions
Siemens6gk5874-2aa00-2aa2 FirmwareAll versions
Siemens6gk5874-3aa00-2aa2 FirmwareAll versions
Siemens6gk5876-3aa02-2ba2 FirmwareAll versions
Siemens6gk5876-3aa02-2ea2 FirmwareAll versions
Siemens6gk5876-4aa00-2ba2 FirmwareAll versions
Siemens6gk5876-4aa00-2da2 FirmwareAll versions
Siemens6gk5856-2ea00-3da1 FirmwareAll versions
Siemens6gk5856-2ea00-3aa1 FirmwareAll versions
Siemens6gk5615-0aa00-2aa2 FirmwareAll versions

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2021-41990?
The gmp plugin in strongSwan before 5.9.4 has a remote integer overflow via a crafted certificate with an RSASSA-PSS signature. For example, this can be triggered by an unrelated self-signed CA certificate sent by an initiator. Remote code execution cannot occur.
How severe is CVE-2021-41990?
CVE-2021-41990 has a CVSS score of 7.5/10 (HIGH severity). The EPSS model estimates a 6.44% probability of exploitation in the next 30 days.
How do I fix CVE-2021-41990?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2021-41990?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST