Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-23009

Опубликовано: 21 фев. 2023
Источник: debian

Описание

Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selector length.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libreswanfixed4.9-2package
libreswannot-affectedbusterpackage

Примечания

  • https://github.com/libreswan/libreswan/issues/954

  • https://libreswan.org/security/CVE-2023-23009/CVE-2023-23009.txt

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selector length.

CVSS3: 6.5
redhat
больше 3 лет назад

Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selector length.

CVSS3: 6.5
nvd
больше 3 лет назад

Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selector length.

CVSS3: 7.5
github
больше 3 лет назад

Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selector length.

oracle-oval
около 3 лет назад

ELSA-2023-3095: libreswan security and bug fix update (MODERATE)