PatchSiren

A10networks CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM A10networks CVE published 2017-02-08

CVE-2016-10213

CVE-2016-10213 is an A10 issue involving random GCM nonce generation in affected software versions before 2.7.2-P8. According to the CVE description, nonce reuse in a session can make it easier for a remote attacker to recover the authentication key and spoof data via a forbidden-attack style weakness. NVD rates the issue as medium severity and notes high attack complexity, network exposure, no privileges [truncated]