CVE-2023-38712: Null Pointer Dereference
An issue was discovered in Libreswan 3.x and 4.x before 4.12. When an IKEv1 ISAKMP SA Informational Exchange packet contains a Delete/Notify payload followed by further Notifies that act on the ISAKMP SA such as a duplicated Delete/Notify message a NULL pointer dereference on the deleted state causes the pluto daemon to crash and restart.
Other sources
An issue was discovered in Libreswan 3.x and 4.x before 4.12. When an IKEv1 ISAKMP SA Informational Exchange packet contains a Delete/Notify payload followed by further Notifies that act on the ISAKMP SA, such as a duplicated Delete/Notify message, a NULL pointer dereference on the deleted state causes the pluto daemon to crash and restart.
— MITRE
When an IKEv1 ISAKMP SA Informational Exchange packet contains a Delete/Notify payload followed by further Notifies that act on the ISAKMP SA, such as a duplicated Delete/Notify message, a null pointer dereference on the deleted state causes the pluto daemon to crash and restart.
https://libreswan.org/security/CVE-2023-38712/CVE-2023-38712.txt
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is CVE-2023-38712?
CVE-2023-38712 is a vulnerability discovered in Libreswan 3.x and 4.x before 4.12 that can lead to a NULL pointer dereference.
What is the severity of CVE-2023-38712?
The severity of CVE-2023-38712 is high, with a CVSS score of 7.5.
Which software versions are affected by CVE-2023-38712?
The vulnerability affects Libreswan versions 3.x to 4.0 and 4.0 to 4.11.
How can I fix CVE-2023-38712?
To fix CVE-2023-38712, update Libreswan to version 4.12 or later.
Where can I find more information about CVE-2023-38712?
You can find more information about CVE-2023-38712 on the Libreswan GitHub page and the official Libreswan security advisory.