|
|
| |
|
| |
openswan: denial of service
| Package(s): | openswan |
CVE #(s): | CVE-2011-4073
|
| Created: | November 3, 2011 |
Updated: | March 16, 2012 |
| Description: |
From the Red Hat advisory:
A use-after-free flaw was found in the way Openswan's pluto IKE daemon used
cryptographic helpers. A remote, authenticated attacker could send a
specially-crafted IKE packet that would crash the pluto daemon. This issue
only affected SMP (symmetric multiprocessing) systems that have the
cryptographic helpers enabled. The helpers are disabled by default on Red
Hat Enterprise Linux 5, but enabled by default on Red Hat Enterprise Linux
6. (CVE-2011-4073)
|
| Alerts: |
|
( Log in to post comments)
|
|
|