CVE

Id
42245  
CVE No.
CVE-2009-4810  
Status
Candidate  
Description
The Secure Remote Password (SRP) implementation in Samhain before 2.5.4 does not check for a certain zero value where required by the protocol, which allows remote attackers to bypass authentication via crafted input.  
Phase
Assigned (20100423)  
Votes
None (candidate not yet proposed)  
Comments