First published: Wed Jul 13 2016(Updated: )
A vulnerability was found in libreswan 3.17. IKEv2 bogus proposal lacking DH transform causes pluto daemon to restart.
Affected Software | Affected Version | How to fix |
---|---|---|
Libreswan |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1356183 is considered to be high due to the potential for service disruption.
To fix REDHAT-BUG-1356183, update libreswan to a patched version that resolves the vulnerability.
REDHAT-BUG-1356183 can lead to the pluto daemon restarting, which may disrupt connectivity and expose the system to further risks.
If you are using libreswan version 3.17, your system is affected by REDHAT-BUG-1356183.
If you cannot update, consider implementing network controls to limit exposure until you can apply the necessary patches for REDHAT-BUG-1356183.