CVE-2015-8023
published 2015-11-18CVE-2015-8023: The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4.2.12 through 5.x before 5.3.4 does not properly validate…
PriorityP434medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
2.58%
83.5th percentile
The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4.2.12 through 5.x before 5.3.4 does not properly validate local state, which allows remote attackers to bypass authentication via an empty Success message in response to an initial Challenge message.
Affected
49 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | strongswan | < strongswan 5.3.3-3 (bookworm) | strongswan 5.3.3-3 (bookworm) |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
strongswan: Authentication bypass in eap-mschapv2 plugin
vendor_redhat·2015-11-16·CVSS 5.0
CVE-2015-8023 [MEDIUM] strongswan: Authentication bypass in eap-mschapv2 plugin
strongswan: Authentication bypass in eap-mschapv2 plugin
The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4.2.12 through 5.x before 5.3.4 does not properly validate local state, which allows remote attackers to bypass authentication via an empty Success message in response to an initial Challenge message.
Statement: This issue did not affect the versions of strongimcv as shipped with Red Hat Enterprise Linux 7, as they did not include support for the eap-mschapv2 plugin.
Package: strongimcv (Red Hat Enterprise Linux 7) - Not affected
Ubuntu
strongSwan vulnerability
vendor_ubuntu·2015-11-16
CVE-2015-8023 strongSwan vulnerability
Title: strongSwan vulnerability
Summary: strongSwan could be made to bypass authentication.
It was discovered that the strongSwan eap-mschapv2 plugin incorrectly
handled state. A remote attacker could use this issue to bypass
authentication.
Instructions: In general, a standard system update will make all the necessary changes.
Debian
CVE-2015-8023: strongswan - The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugi...
vendor_debian·2015·CVSS 5.0
CVE-2015-8023 [MEDIUM] CVE-2015-8023: strongswan - The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugi...
The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4.2.12 through 5.x before 5.3.4 does not properly validate local state, which allows remote attackers to bypass authentication via an empty Success message in response to an initial Challenge message.
Scope: local
bookworm: resolved (fixed in 5.3.3-3)
bullseye: resolved (fixed in 5.3.3-3)
forky: resolved (fixed in 5.3.3-3)
sid: resolved (fixed in 5.3.3-3)
trixie: resolved (fixed in 5.3.3-3)
GHSA
GHSA-4qm7-rm85-wr68: The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4
ghsa_unreviewed·2022-05-14
CVE-2015-8023 [MEDIUM] CWE-20 GHSA-4qm7-rm85-wr68: The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4
The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4.2.12 through 5.x before 5.3.4 does not properly validate local state, which allows remote attackers to bypass authentication via an empty Success message in response to an initial Challenge message.
OSV
CVE-2015-8023: The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4
osv·2015-11-18·CVSS 5.0
CVE-2015-8023 [MEDIUM] CVE-2015-8023: The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4
The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4.2.12 through 5.x before 5.3.4 does not properly validate local state, which allows remote attackers to bypass authentication via an empty Success message in response to an initial Challenge message.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00025.htmlhttp://lists.opensuse.org/opensuse-updates/2015-11/msg00139.htmlhttp://www.debian.org/security/2015/dsa-3398http://www.securityfocus.com/bid/84947http://www.ubuntu.com/usn/USN-2811-1https://www.strongswan.org/blog/2015/11/16/strongswan-vulnerability-%28cve-2015-8023%29.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00025.htmlhttp://lists.opensuse.org/opensuse-updates/2015-11/msg00139.htmlhttp://www.debian.org/security/2015/dsa-3398http://www.securityfocus.com/bid/84947http://www.ubuntu.com/usn/USN-2811-1https://www.strongswan.org/blog/2015/11/16/strongswan-vulnerability-%28cve-2015-8023%29.html
2015-11-18
Published