CVE-2012-4435: Cipherdyne Fwknop

Medium severity, CVSS 4.0. EPSS: 2.3% chance of exploitation in the next 30 days.

fwknop before 2.0.3 does not properly validate IP addresses, which allows remote authenticated users to cause a denial of service (server crash) via a long IP address.

Affected products

  • Cipherdyne Fwknop: up to and including 2.0.2; version 2.0 only; version 2.0.1 only

Published 2012-10-22. Last modified 2026-06-16.