« List of all CVEs

CVE-2013-0250

Published: 6/6/2014 Last updated: 8/6/2024 Reserved: 12/6/2012

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (1)

conf-libcorosync

Products affected (1)

Product Vendor Version
n/a n/a < 10.0.20348.469

References (10)