Описание
In stroke_socket.c in strongSwan before 5.6.3, a missing packet length check could allow a buffer underflow, which may lead to resource exhaustion and denial of service while reading from the socket.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | released | 5.6.2-1ubuntu2.2 |
| devel | released | 5.6.3-1ubuntu1 |
| esm-infra-legacy/trusty | released | 5.1.2-0ubuntu2.10 |
| esm-infra/bionic | released | 5.6.2-1ubuntu2.2 |
| esm-infra/xenial | released | 5.3.5-1ubuntu3.7 |
| precise/esm | DNE | |
| trusty | released | 5.1.2-0ubuntu2.10 |
| trusty/esm | released | 5.1.2-0ubuntu2.10 |
| upstream | released | 5.6.3 |
Показывать по
4 Medium
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
In stroke_socket.c in strongSwan before 5.6.3, a missing packet length check could allow a buffer underflow, which may lead to resource exhaustion and denial of service while reading from the socket.
In stroke_socket.c in strongSwan before 5.6.3, a missing packet length check could allow a buffer underflow, which may lead to resource exhaustion and denial of service while reading from the socket.
In stroke_socket.c in strongSwan before 5.6.3, a missing packet length ...
In stroke_socket.c in strongSwan before 5.6.3, a missing packet length check could allow a buffer underflow, which may lead to resource exhaustion and denial of service while reading from the socket.
Уязвимость функции stroke_socket.c IPSEC демона strongSwan, позволяющая нарушителю вызвать отказ в обслуживании
4 Medium
CVSS2
6.5 Medium
CVSS3