Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-30570

Опубликовано: 03 мая 2023
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptable crypto algorithms, and the response packet is not sent with a zero responder SPI. When a subsequent packet is received where the sender reuses the libreswan responder SPI as its own initiator SPI, the pluto daemon state machine crashes. No remote code execution is possible.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6libreswanOut of support scope
Red Hat Enterprise Linux 7libreswanNot affected
Red Hat Enterprise Linux 8libreswanFixedRHSA-2023:212204.05.2023
Red Hat Enterprise Linux 8.1 Update Services for SAP SolutionslibreswanFixedRHSA-2023:212604.05.2023
Red Hat Enterprise Linux 8.2 Advanced Update SupportlibreswanFixedRHSA-2023:212404.05.2023
Red Hat Enterprise Linux 8.2 Telecommunications Update ServicelibreswanFixedRHSA-2023:212404.05.2023
Red Hat Enterprise Linux 8.2 Update Services for SAP SolutionslibreswanFixedRHSA-2023:212404.05.2023
Red Hat Enterprise Linux 8.4 Extended Update SupportlibreswanFixedRHSA-2023:212504.05.2023
Red Hat Enterprise Linux 8.6 Extended Update SupportlibreswanFixedRHSA-2023:212304.05.2023
Red Hat Enterprise Linux 9libreswanFixedRHSA-2023:212004.05.2023

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2187165libreswan: Malicious IKEv1 Aggressive Mode packets can crash libreswan

EPSS

Процентиль: 39%
0.00175
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

CVSS3: 7.5
nvd
больше 2 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

CVSS3: 7.5
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 7.5
debian
больше 2 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder S ...

CVSS3: 7.5
github
больше 2 лет назад

pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets. The earliest affected version is 3.28.

EPSS

Процентиль: 39%
0.00175
Низкий

7.5 High

CVSS3