High severity7.5NVD Advisory· Published Oct 31, 2022· Updated Jun 17, 2026
CVE-2022-40617
CVE-2022-40617
Description
strongSwan before 5.9.8 allows remote attackers to cause a denial of service in the revocation plugin by sending a crafted end-entity (and intermediate CA) certificate that contains a CRL/OCSP URL that points to a server (under the attacker's control) that doesn't properly respond but (for example) just does nothing after the initial TCP handshake, or sends an excessive amount of application data.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
12(expand)+ 1 more
- (no CPE)
- (no CPE)range: <5.9.8
- osv-coords10 versionspkg:rpm/opensuse/strongswan&distro=openSUSE%20Leap%2015.3pkg:rpm/opensuse/strongswan&distro=openSUSE%20Leap%2015.4pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP3pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP4pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP3pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP4pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP3pkg:rpm/suse/strongswan&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP4
< 5.8.2-150200.11.30.1+ 9 more
- (no CPE)range: < 5.8.2-150200.11.30.1
- (no CPE)range: < 5.8.2-150400.19.3.3
- (no CPE)range: < 5.8.2-150200.11.30.1
- (no CPE)range: < 5.8.2-150400.19.3.3
- (no CPE)range: < 5.8.2-150200.11.30.1
- (no CPE)range: < 5.8.2-150400.19.3.3
- (no CPE)range: < 5.1.3-26.23.1
- (no CPE)range: < 5.1.3-26.23.1
- (no CPE)range: < 5.8.2-150200.11.30.1
- (no CPE)range: < 5.8.2-150400.19.3.3
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.