Description
An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.
Published: 2020-05-12
Score: 7.5 High
EPSS: 4.8% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-4684-1 libreswan security update
EUVD EUVD EUVD-2020-12590 An out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till 3.31 where, an unauthenticated attacker could use this flaw to crash libreswan by sending specially-crafted IKEv1 Informational Exchange packets. The daemon respawns after the crash.
History

No history.

Subscriptions

Libreswan Libreswan
Redhat Enterprise Linux Rhel E4s Rhel Eus
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-04T06:46:30.902Z

Reserved: 2019-11-27T00:00:00.000Z

Link: CVE-2020-1763

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-05-12T14:15:12.580

Modified: 2024-11-21T05:11:20.113

Link: CVE-2020-1763

cve-icon Redhat

Severity : Important

Publid Date: 2020-05-11T00:00:00Z

Links: CVE-2020-1763 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses