An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2020-05-12T13:41:20

Updated: 2024-08-04T06:46:30.902Z

Reserved: 2019-11-27T00:00:00

Link: CVE-2020-1763

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-05-12T14:15:12.580

Modified: 2023-11-07T03:19:34.507

Link: CVE-2020-1763

cve-icon Redhat

Severity : Important

Publid Date: 2020-05-11T00:00:00Z

Links: CVE-2020-1763 - Bugzilla