Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-30570

Опубликовано: 03 мая 2023
Источник: redhat
CVSS3: 7.5

Описание

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptable crypto algorithms, and the response packet is not sent with a zero responder SPI. When a subsequent packet is received where the sender reuses the libreswan responder SPI as its own initiator SPI, the pluto daemon state machine crashes. No remote code execution is possible.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libreswanOut of support scope
Red Hat Enterprise Linux 7libreswanNot affected
Red Hat Enterprise Linux 8libreswanFixedRHSA-2023:212204.05.2023
Red Hat Enterprise Linux 8.1 Update Services for SAP SolutionslibreswanFixedRHSA-2023:212604.05.2023
Red Hat Enterprise Linux 8.2 Advanced Update SupportlibreswanFixedRHSA-2023:212404.05.2023
Red Hat Enterprise Linux 8.2 Telecommunications Update ServicelibreswanFixedRHSA-2023:212404.05.2023
Red Hat Enterprise Linux 8.2 Update Services for SAP SolutionslibreswanFixedRHSA-2023:212404.05.2023
Red Hat Enterprise Linux 8.4 Extended Update SupportlibreswanFixedRHSA-2023:212504.05.2023
Red Hat Enterprise Linux 8.6 Extended Update SupportlibreswanFixedRHSA-2023:212304.05.2023
Red Hat Enterprise Linux 9libreswanFixedRHSA-2023:212004.05.2023

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2187165libreswan: Malicious IKEv1 Aggressive Mode packets can crash libreswan

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 3 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

CVSS3: 7.5
nvd
около 3 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

CVSS3: 7.5
msrc
около 3 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

CVSS3: 7.5
debian
около 3 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder S ...

CVSS3: 7.5
github
около 3 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

7.5 High

CVSS3