CVE-2009-0790
published 2009-04-01CVE-2009-0790: The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows…
PriorityP422medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
3.21%
86.7th percentile
The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.
Affected
65 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | strongswan | < strongswan 4.2.14-1 (bookworm) | strongswan 4.2.14-1 (bookworm) |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
| strongswan | strongswan | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
openswan: ISAKMP DPD remote DoS
vendor_redhat·2009-03-30·CVSS 5.0
CVE-2009-0790 [MEDIUM] openswan: ISAKMP DPD remote DoS
openswan: ISAKMP DPD remote DoS
The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.
Debian
CVE-2009-0790: strongswan - The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 ...
vendor_debian·2009·CVSS 5.0
CVE-2009-0790 [MEDIUM] CVE-2009-0790: strongswan - The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 ...
The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.
Scope: local
bookworm: resolved (fixed in 4.2.14-1)
bullseye: resolved (fixed in 4.2.14-1)
forky: resolved (fixed in 4.2.14-1)
sid: resolved (fixed in 4.2.14-1)
trixie: resolved (fixed in 4.2.14-1)
GHSA
GHSA-xf8f-c2h7-7qmc: The pluto IKE daemon in Openswan and Strongswan IPsec 2
ghsa_unreviewed·2022-05-02
CVE-2009-0790 [MEDIUM] CWE-20 GHSA-xf8f-c2h7-7qmc: The pluto IKE daemon in Openswan and Strongswan IPsec 2
The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.
OSV
CVE-2009-0790: The pluto IKE daemon in Openswan and Strongswan IPsec 2
osv·2009-04-01·CVSS 5.0
CVE-2009-0790 [MEDIUM] CVE-2009-0790: The pluto IKE daemon in Openswan and Strongswan IPsec 2
The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.
No detection rules found.
No public exploits indexed.
http://download.strongswan.org/CHANGES4.txthttp://lists.opensuse.org/opensuse-security-announce/2009-04/msg00010.htmlhttp://secunia.com/advisories/34472http://secunia.com/advisories/34483http://secunia.com/advisories/34494http://secunia.com/advisories/34546http://www.debian.org/security/2009/dsa-1759http://www.debian.org/security/2009/dsa-1760http://www.openswan.org/CVE-2009-0790/CVE-2009-0790.txthttp://www.redhat.com/support/errata/RHSA-2009-0402.htmlhttp://www.securityfocus.com/archive/1/502270/100/0/threadedhttp://www.securityfocus.com/bid/34296http://www.securitytracker.com/id?1021949http://www.securitytracker.com/id?1021950http://www.vupen.com/english/advisories/2009/0886https://exchange.xforce.ibmcloud.com/vulnerabilities/49523https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11171http://download.strongswan.org/CHANGES4.txthttp://lists.opensuse.org/opensuse-security-announce/2009-04/msg00010.htmlhttp://secunia.com/advisories/34472http://secunia.com/advisories/34483http://secunia.com/advisories/34494http://secunia.com/advisories/34546http://www.debian.org/security/2009/dsa-1759http://www.debian.org/security/2009/dsa-1760http://www.openswan.org/CVE-2009-0790/CVE-2009-0790.txthttp://www.redhat.com/support/errata/RHSA-2009-0402.htmlhttp://www.securityfocus.com/archive/1/502270/100/0/threadedhttp://www.securityfocus.com/bid/34296http://www.securitytracker.com/id?1021949http://www.securitytracker.com/id?1021950http://www.vupen.com/english/advisories/2009/0886https://exchange.xforce.ibmcloud.com/vulnerabilities/49523https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11171
2009-04-01
Published