{
  "schema_version": "1.6.0",
  "id": "STRONGSWAN-CVE-2023-26463",
  "aliases": [
    "CVE-2023-26463"
  ],
  "modified": "2026-09-25T10:51:01Z",
  "affected": [
    {
      "ranges": [
        {
          "type": "SEMVER",
          "events": [
            {
              "introduced": "5.9.8"
            },
            {
              "fixed": "5.9.10"
            }
          ]
        },
        {
          "type": "GIT",
          "repo": "https://github.com/strongswan/strongswan.git",
          "events": [
            {
              "introduced": "e09bc70d124554f8ee892f3ee4a988ce6d2e7c90"
            },
            {
              "fixed": "c0ae81fc834b96f1f0ae1e00a2b1d35b212c3668"
            }
          ]
        }
      ]
    }
  ],
  "database_specific": {
    "package": "strongswan"
  },
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://strongswan.org/security/CVE-2023-26463.html"
    },
    {
      "type": "WEB",
      "url": "https://download.strongswan.org/security/CVE-2023-26463"
    }
  ],
  "published": "2023-03-02T13:00:00Z",
  "summary": "A vulnerability related to certificate verification in TLS-based EAP methods was discovered that results in a denial of service but possibly even remote code execution."
}
