CVE-2010-2628

Source
https://cve.org/CVERecord?id=CVE-2010-2628
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2010-2628.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2010-2628
Downstream
Published
2010-08-20T18:00:02Z
Modified
2026-04-10T03:41:21.082623Z
Summary
[none]
Details

The IKE daemon in strongSwan 4.3.x before 4.3.7 and 4.4.x before 4.4.1 does not properly check the return values of snprintf calls, which allows remote attackers to execute arbitrary code via crafted (1) certificate or (2) identity data that triggers buffer overflows.

References

Affected packages