Loading
The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.
Use Corosync vendor hub and Corosync product page to widen CVE-2013-0250 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-30472, CVE-2026-35091 and CVE-2026-35092 for nearby disclosures in the same product family.