Required CVE Record Information
Description
The ikev2parent_inI1outR1 function in pluto/ikev2_parent.c in libreswan before 3.7 allows remote attackers to cause a denial of service (restart) via an IKEv2 I1 notification without a KE payload.
References 5 Total
- secunia.com: 56276 third-party-advisory
- secunia.com: 56915 third-party-advisory
- lists.libreswan.org: [Swan-announce] 20131211 Libreswan 3.7 released mailing-list
- https://github.com/libreswan/libreswan/commit/2899351224fe2940aec37d7656e1e392c0fe07f0
- osvdb.org: 101573 vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 5 Total
- secunia.com: 56276 third-party-advisoryx_transferred
- secunia.com: 56915 third-party-advisoryx_transferred
- lists.libreswan.org: [Swan-announce] 20131211 Libreswan 3.7 released mailing-listx_transferred
- https://github.com/libreswan/libreswan/commit/2899351224fe2940aec37d7656e1e392c0fe07f0 x_transferred
- osvdb.org: 101573 vdb-entryx_transferred