Описание
Security update for strongswan
This update fixes a NULL ptr dereference (DoS) via ID_DER_ASN1_DN ID payloads.
Security Issue reference:
Список пакетов
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3-TERADATA
SUSE Linux Enterprise Server for SAP Applications 11 SP3
Ссылки
- Link for SUSE-SU-2015:1227-1
- E-Mail link for SUSE-SU-2015:1227-1
- SUSE Security Ratings
- SUSE Bug 815236
- SUSE Bug 833278
- SUSE Bug 840826
- SUSE Bug 847506
- SUSE Bug 870572
- SUSE Bug 876449
- SUSE Bug 933591
- SUSE CVE CVE-2013-2944 page
- SUSE CVE CVE-2013-5018 page
- SUSE CVE CVE-2014-2338 page
- SUSE CVE CVE-2014-2891 page
- SUSE CVE CVE-2015-4171 page
Описание
strongSwan 4.3.5 through 5.0.3, when using the OpenSSL plugin for ECDSA signature verification, allows remote attackers to authenticate as other users via an invalid signature.
Затронутые продукты
Ссылки
- CVE-2013-2944
- SUSE Bug 815236
Описание
The is_asn1 function in strongSwan 4.1.11 through 5.0.4 does not properly validate the return value of the asn1_length function, which allows remote attackers to cause a denial of service (segmentation fault) via a (1) XAuth username, (2) EAP identity, or (3) PEM encoded file that starts with a 0x04, 0x30, or 0x31 character followed by an ASN.1 length value that triggers an integer overflow.
Затронутые продукты
Ссылки
- CVE-2013-5018
- SUSE Bug 833278
Описание
IKEv2 in strongSwan 4.0.7 before 5.1.3 allows remote attackers to bypass authentication by rekeying an IKE_SA during (1) initiation or (2) re-authentication, which triggers the IKE_SA state to be set to established.
Затронутые продукты
Ссылки
- CVE-2014-2338
- SUSE Bug 870572
Описание
strongSwan before 5.1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a crafted ID_DER_ASN1_DN ID payload.
Затронутые продукты
Ссылки
- CVE-2014-2891
- SUSE Bug 876449
Описание
strongSwan 4.3.0 through 5.x before 5.3.2 and strongSwan VPN Client before 1.4.6, when using EAP or pre-shared keys for authenticating an IKEv2 connection, does not enforce server authentication restrictions until the entire authentication process is complete, which allows remote servers to obtain credentials by using a valid certificate and then reading the responses.
Затронутые продукты
Ссылки
- CVE-2015-4171
- SUSE Bug 931845
- SUSE Bug 933591