Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wx69-vm3h-3cgv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.

An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.

EPSS

Процентиль: 87%
0.03288
Низкий

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 6 лет назад

An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.

CVSS3: 7.5
redhat
около 6 лет назад

An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.

CVSS3: 7.5
nvd
около 6 лет назад

An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.

CVSS3: 7.5
debian
около 6 лет назад

An out-of-bounds buffer read flaw was found in the pluto daemon of lib ...

oracle-oval
около 6 лет назад

ELSA-2020-2070: libreswan security update (IMPORTANT)

EPSS

Процентиль: 87%
0.03288
Низкий

Дефекты

CWE-125