cbcvebase.

Debian Strongswan vulnerabilities

37 known vulnerabilities affecting debian/strongswan.

Total CVEs
37
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH14MEDIUM17LOW2

Vulnerabilities

Page 2 of 2
CVE-2018-5388P4MEDIUMCVSS 6.5fixed in strongswan 5.6.3-1 (bookworm)2018
CVE-2018-5388 [MEDIUM] CVE-2018-5388: strongswan - In stroke_socket.c in strongSwan before 5.6.3, a missing packet length check cou... In stroke_socket.c in strongSwan before 5.6.3, a missing packet length check could allow a buffer underflow, which may lead to resource exhaustion and denial of service while reading from the socket. Scope: local bookworm: resolved (fixed in 5.6.3-1) bullseye: resolved (fixed in 5.6.3-1) forky: resolved (fixed in 5.6.3-1) sid: resolved (fixed in 5.6.3-1) trixie:
debian
CVE-2015-8023P4MEDIUMCVSS 5.0fixed in strongswan 5.3.3-3 (bookworm)2015
CVE-2015-8023 [MEDIUM] CVE-2015-8023: strongswan - The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugi... The server implementation of the EAP-MSCHAPv2 protocol in the eap-mschapv2 plugin in strongSwan 4.2.12 through 5.x before 5.3.4 does not properly validate local state, which allows remote attackers to bypass authentication via an empty Success message in response to an initial Challenge message. Scope: local bookworm: resolved (fixed in 5.3.3-3) bullseye: resolve
debian
CVE-2013-2054P4MEDIUMCVSS 6.8fixed in strongswan 4.3.4-1 (bookworm)2013
CVE-2013-2054 [MEDIUM] CVE-2013-2054: strongswan - Buffer overflow in the atodn function in strongSwan 2.0.0 through 4.3.4, when Op... Buffer overflow in the atodn function in strongSwan 2.0.0 through 4.3.4, when Opportunistic Encryption is enabled and an RSA key is being used, allows remote attackers to cause a denial of service (pluto IKE daemon crash) and possibly execute arbitrary code via crafted DNS TXT records. NOTE: this might be the same vulnerability as CVE-2013-2053 and CVE-2013-2054.
debian
CVE-2014-9221P4MEDIUMCVSS 5.0fixed in strongswan 5.2.1-5 (bookworm)2014
CVE-2014-9221 [MEDIUM] CVE-2014-9221: strongswan - strongSwan 4.5.x through 5.2.x before 5.2.1 allows remote attackers to cause a d... strongSwan 4.5.x through 5.2.x before 5.2.1 allows remote attackers to cause a denial of service (invalid pointer dereference) via a crafted IKEv2 Key Exchange (KE) message with Diffie-Hellman (DH) group 1025. Scope: local bookworm: resolved (fixed in 5.2.1-5) bullseye: resolved (fixed in 5.2.1-5) forky: resolved (fixed in 5.2.1-5) sid: resolved (fixed in 5.2.1-5
debian
CVE-2013-2944P4MEDIUMCVSS 4.9fixed in strongswan 4.6.4-7 (bookworm)2013
CVE-2013-2944 [MEDIUM] CVE-2013-2944: strongswan - strongSwan 4.3.5 through 5.0.3, when using the OpenSSL plugin for ECDSA signatur... strongSwan 4.3.5 through 5.0.3, when using the OpenSSL plugin for ECDSA signature verification, allows remote attackers to authenticate as other users via an invalid signature. Scope: local bookworm: resolved (fixed in 4.6.4-7) bullseye: resolved (fixed in 4.6.4-7) forky: resolved (fixed in 4.6.4-7) sid: resolved (fixed in 4.6.4-7) trixie: resolved (fixed in 4.6.
debian
CVE-2013-6075P4MEDIUMCVSS 5.0fixed in strongswan 5.1.0-3 (bookworm)2013
CVE-2013-6075 [MEDIUM] CVE-2013-6075: strongswan - The compare_dn function in utils/identification.c in strongSwan 4.3.3 through 5.... The compare_dn function in utils/identification.c in strongSwan 4.3.3 through 5.1.1 allows (1) remote attackers to cause a denial of service (out-of-bounds read, NULL pointer dereference, and daemon crash) or (2) remote authenticated users to impersonate arbitrary users and bypass access restrictions via a crafted ID_DER_ASN1_DN ID, related to an "insufficient le
debian
CVE-2009-2185P4MEDIUMCVSS 5.0fixed in strongswan 4.2.14-1.2 (bookworm)2009
CVE-2009-2185 [MEDIUM] CVE-2009-2185: strongswan - The ASN.1 parser (pluto/asn1.c, libstrongswan/asn1/asn1.c, libstrongswan/asn1/as... The ASN.1 parser (pluto/asn1.c, libstrongswan/asn1/asn1.c, libstrongswan/asn1/asn1_parser.c) in (a) strongSwan 2.8 before 2.8.10, 4.2 before 4.2.16, and 4.3 before 4.3.2; and (b) openSwan 2.6 before 2.6.22 and 2.4 before 2.4.15 allows remote attackers to cause a denial of service (pluto IKE daemon crash) via an X.509 certificate with (1) crafted Relative Distingu
debian
CVE-2009-0790P4MEDIUMCVSS 5.0fixed in strongswan 4.2.14-1 (bookworm)2009
CVE-2009-0790 [MEDIUM] CVE-2009-0790: strongswan - The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 ... The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer
debian
CVE-2009-1958P4MEDIUMCVSS 5.0fixed in strongswan 4.2.14-1.1 (bookworm)2009
CVE-2009-1958 [MEDIUM] CVE-2009-1958: strongswan - charon/sa/tasks/child_create.c in the charon daemon in strongSWAN before 4.3.1 s... charon/sa/tasks/child_create.c in the charon daemon in strongSWAN before 4.3.1 switches the NULL checks for TSi and TSr payloads, which allows remote attackers to cause a denial of service via an IKE_AUTH request without a (1) TSi or (2) TSr traffic selector. Scope: local bookworm: resolved (fixed in 4.2.14-1.1) bullseye: resolved (fixed in 4.2.14-1.1) forky: res
debian
CVE-2014-2891P4MEDIUMCVSS 5.0≤ 5.1.22014-05-07
CVE-2014-2891 [MEDIUM] CVE-2014-2891: strongSwan before 5.1.2 allows remote attackers to cause a denial of service (NULL pointer dereferen strongSwan before 5.1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a crafted ID_DER_ASN1_DN ID payload.
nvddebian
CVE-2013-6076P4MEDIUMCVSS 5.0fixed in strongswan 5.1.0-3 (bookworm)2013
CVE-2013-6076 [MEDIUM] CVE-2013-6076: strongswan - strongSwan 5.0.2 through 5.1.0 allows remote attackers to cause a denial of serv... strongSwan 5.0.2 through 5.1.0 allows remote attackers to cause a denial of service (NULL pointer dereference and charon daemon crash) via a crafted IKEv1 fragmentation packet. Scope: local bookworm: resolved (fixed in 5.1.0-3) bullseye: resolved (fixed in 5.1.0-3) forky: resolved (fixed in 5.1.0-3) sid: resolved (fixed in 5.1.0-3) trixie: resolved (fixed in 5.1.
debian
CVE-2018-6459P4MEDIUMCVSS 5.3fixed in strongswan 5.6.2-1 (bookworm)2018
CVE-2018-6459 [MEDIUM] CVE-2018-6459: strongswan - The rsa_pss_params_parse function in libstrongswan/credentials/keys/signature_pa... The rsa_pss_params_parse function in libstrongswan/credentials/keys/signature_params.c in strongSwan 5.6.1 allows remote attackers to cause a denial of service via a crafted RSASSA-PSS signature that lacks a mask generation function parameter. Scope: local bookworm: resolved (fixed in 5.6.2-1) bullseye: resolved (fixed in 5.6.2-1) forky: resolved (fixed in 5.6.2-
debian
CVE-2009-2661P4MEDIUMCVSS 5.0fixed in strongswan 4.3.2-1.1 (bookworm)2009
CVE-2009-2661 [MEDIUM] CVE-2009-2661: strongswan - The asn1_length function in strongSwan 2.8 before 2.8.11, 4.2 before 4.2.17, and... The asn1_length function in strongSwan 2.8 before 2.8.11, 4.2 before 4.2.17, and 4.3 before 4.3.3 does not properly handle X.509 certificates with crafted Relative Distinguished Names (RDNs), which allows remote attackers to cause a denial of service (pluto IKE daemon crash) via malformed ASN.1 data. NOTE: this is due to an incomplete fix for CVE-2009-2185. Scope
debian
CVE-2009-1957P4MEDIUMCVSS 5.0fixed in strongswan 4.2.14-1.1 (bookworm)2009
CVE-2009-1957 [MEDIUM] CVE-2009-1957: strongswan - charon/sa/ike_sa.c in the charon daemon in strongSWAN before 4.3.1 allows remote... charon/sa/ike_sa.c in the charon daemon in strongSWAN before 4.3.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an invalid IKE_SA_INIT request that triggers "an incomplete state," followed by a CREATE_CHILD_SA request. Scope: local bookworm: resolved (fixed in 4.2.14-1.1) bullseye: resolved (fixed in 4.2.14-1.1) fo
debian
CVE-2008-4551P4MEDIUMCVSS 5.0fixed in strongswan 4.2.4-5 (bookworm)2008
CVE-2008-4551 [MEDIUM] CVE-2008-4551: strongswan - strongSwan 4.2.6 and earlier allows remote attackers to cause a denial of servic... strongSwan 4.2.6 and earlier allows remote attackers to cause a denial of service (daemon crash) via an IKE_SA_INIT message with a large number of NULL values in a Key Exchange payload, which triggers a NULL pointer dereference for the return value of the mpz_export function in the GNU Multiprecision Library (GMP). Scope: local bookworm: resolved (fixed in 4.2.4-
debian
CVE-2015-4171P4LOWCVSS 2.6fixed in strongswan 5.3.1-1 (bookworm)2015
CVE-2015-4171 [LOW] CVE-2015-4171: strongswan - strongSwan 4.3.0 through 5.x before 5.3.2 and strongSwan VPN Client before 1.4.6... strongSwan 4.3.0 through 5.x before 5.3.2 and strongSwan VPN Client before 1.4.6, when using EAP or pre-shared keys for authenticating an IKEv2 connection, does not enforce server authentication restrictions until the entire authentication process is complete, which allows remote servers to obtain credentials by using a valid certificate and then reading the respons
debian
CVE-2019-10155P4LOWCVSS 3.1fixed in libreswan 3.27-6 (bookworm)2019
CVE-2019-10155 [LOW] CVE-2019-10155: libreswan - The Libreswan Project has found a vulnerability in the processing of IKEv1 infor... The Libreswan Project has found a vulnerability in the processing of IKEv1 informational exchange packets which are encrypted and integrity protected using the established IKE SA encryption and integrity keys, but as a receiver, the integrity check value was not verified. This issue affects versions before 3.29. Scope: local bookworm: resolved (fixed in 3.27-6) bul
debian
Debian Strongswan vulnerabilities | cvebase