Infinite Loop Vulnerability in strongSwan's X.509 Plugin
CVE-2026-78132
7.5HIGH
What is CVE-2026-78132?
The strongSwan software, specifically versions 5.1.3 through 6.0.7, is susceptible to an infinite loop vulnerability within the X.509 plugin's attribute certificate parser for ietfAttrSyntax. This flaw may cause the application to enter an unresponsive state when processing certain attribute certificates, potentially leading to Denial of Service (DoS) conditions. Administrators are advised to update to the patched version to mitigate this issue.
Affected Version(s)
strongSwan 5.1.3 < 6.1.0
