SA-2025-065 - Diffie-Hellman Resource Exhaustion (CVE-2024-41996)
Validating the order of the public keys in the Diffie-Hellman Key Agreement Protocol, when an approved safe prime is used, allows remote attackers (from the client side) to trigger unnecessarily expen...
Equipo CECOM
5 min
SA-2025-065 - Diffie-Hellman Resource Exhaustion (CVE-2024-41996)
Resumen de la Vulnerabilidad
Validating the order of the public keys in the Diffie-Hellman Key Agreement Protocol, when an approved safe prime is used, allows remote attackers (from the client side) to trigger unnecessarily expensive server-side DHE modular-exponentiation calculations. The client may cause asymmetric resource c...
Detalles Técnicos
Información de la Vulnerabilidad
- CVE ID: CVE-2024-41996
- Security Advisory: SA-2025-065
- Fecha de Publicación: 29/7/2025
- Fuente: Extreme Networks Security Advisory
Para más detalles técnicos, consulte el aviso oficial de Extreme Networks.