Skip to content

CVE-2013-0250

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0094 (0.9%)
Percentile: 76.4%
EPSS: 2026-05-06

Affects

corosync:corosync

Technical description

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.

Published: 6/6/2014, 2:55:03 PM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam