|
|
| |
|
| |
openswan: code execution
| Package(s): | openswan |
CVE #(s): | CVE-2010-3752
CVE-2010-3753
|
| Created: | November 17, 2010 |
Updated: | November 17, 2010 |
| Description: |
From the Red Hat advisory: two input sanitization flaws were found in the Openswan client-side
handling of Cisco gateway banners. A malicious or compromised VPN gateway
could use these flaws to execute arbitrary code on the connecting Openswan
client. |
| Alerts: |
|
( Log in to post comments)
|
|
|