Description
The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1759-1 | New strongswan packages fix denial of service |
Debian DSA |
DSA-1760-1 | New openswan packages fix denial of service |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-07T04:48:52.007Z
Reserved: 2009-03-04T00:00:00.000Z
Link: CVE-2009-0790
No data.
Status : Deferred
Published: 2009-04-01T10:30:00.267
Modified: 2025-04-09T00:30:58.490
Link: CVE-2009-0790
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA