CVE-2013-0250

medium
Published 2014-06-06 · Modified 2026-05-06
CVSS v3
—
CVSS v4 NEW
—
not yet in upstream
VIR risk
5.0

Description

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.

Predictions

Exploit likelihood
20%
Patch ETA
—

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

Mitigation details

Source: Debian Security Tracker · View original ↗ · DFSG

CVE-2013-0250 NameCVE-2013-0250 DescriptionThe init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet. SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web…

CVE-2013-0250

NameCVE-2013-0250
DescriptionThe init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
corosync (PTS)bullseye3.1.2-2fixed
bullseye (security)3.1.2-2+deb11u2fixed
bookworm, bookworm (security)3.1.7-1+deb12u2fixed
trixie (security), trixie3.1.9-2+deb13u1fixed
forky, sid3.1.10-2fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
corosyncsource(unstable)(not affected)

Notes

- corosync <not-affected> (Introduced in v1.99.8-2-ge925f42; bug #699615)
https://github.com/corosync/corosync/commit/4378915a33ab7fbbb5874f79dd7cd71b014ef44e#L0R407
https://www.openwall.com/lists/oss-security/2013/02/01/1

Home - Debian Security - Source (Git)

Apply commands

text fix
Notes
- corosync <not-affected> (Introduced in v1.99.8-2-ge925f42; bug #699615)https://github.com/corosync/corosync/commit/4378915a33ab7fbbb5874f79dd7cd71b014ef44e#L0R407https://www.openwall.com/lists/oss-security/2013/02/01/1

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed0
debian debianbullseyefixed0
debian debianforkyfixed0
debian debiansidfixed0
debian debiantrixiefixed0

Application impact

VendorProductVersionsFixed
corosynccorosync2.0.0
corosynccorosync2.0.1
corosynccorosync2.0.2
corosynccorosync2.0.3
corosynccorosync2.1.0
corosynccorosync2.1.1
corosynccorosync2.2.0

References

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.