Required CVE Record Information
Description
Use-after-free vulnerability in the cryptographic helper handler functionality in Openswan 2.3.0 through 2.6.36 allows remote authenticated users to cause a denial of service (pluto IKE daemon crash) via vectors related to the (1) quick_outI1_continue and (2) quick_outI1 functions.
References 8 Total
- secunia.com: 47342 third-party-advisory
- securityfocus.com: 50440 vdb-entry
- debian.org: DSA-2374 vendor-advisory
- secunia.com: 46678 third-party-advisory
- http://www.openswan.org/download/CVE-2011-4073/CVE-2011-4073.txt
- redhat.com: RHSA-2011:1422 vendor-advisory
- securitytracker.com: 1026268 vdb-entry
- secunia.com: 46681 third-party-advisory
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 8 Total
- secunia.com: 47342 third-party-advisoryx_transferred
- securityfocus.com: 50440 vdb-entryx_transferred
- debian.org: DSA-2374 vendor-advisoryx_transferred
- secunia.com: 46678 third-party-advisoryx_transferred
- http://www.openswan.org/download/CVE-2011-4073/CVE-2011-4073.txt x_transferred
- redhat.com: RHSA-2011:1422 vendor-advisoryx_transferred
- securitytracker.com: 1026268 vdb-entryx_transferred
- secunia.com: 46681 third-party-advisoryx_transferred