USN-6488-2:强 Swan脆弱
2023年12月14日
强Swan接收特殊编译网络流量时可崩溃或运行程序
发布
包包
- 强斯万IPsecVPN解决方案
细节
USN6488-1固定强Swan漏洞更新提供
untu16.04LTS和Ubuntu18.04LTS的相应更新
原创咨询细节
Florian Picca发现强Swan错误处理某些DH
公共价值远程攻击者可用此题引起强 Swan
崩溃,导致拒绝服务或可能任意执行
代码
相关通知
- USN6488-1: strongswan-tnc-base, strongswan-tnc-server, strongswan-tnc-pdp, libcharon-standard-plugins, libcharon-extra-plugins, strongswan-tnc-ifmap, charon-cmd, strongswan-nm, libstrongswan, strongswan-scepclient, strongswan-pki, libstrongswan-standard-plugins, libcharon-extauth-plugins, strongswan-libcharon, libstrongswan-extra-plugins, strongswan-starter, strongswan-charon, charon-systemd, strongswan-tnc-client, strongswan-swanctl, strongswan