REDHAT-BUG-497990: Null Pointer Dereference
ipsec-tools upstream version 0.7.2 announcement mentions following security fix:
o Fix a remote crash in fragmentation code
http://sourceforge.net/project/shownotes.php?groupid=74601&releaseid=677611
Upstream CVS commit provides further details:
From Neil Kettle: Fix a possible null pointer dereference in fragmentation code.
http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/isakmpfrag.c?f=h#rev1.4.6.1 http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/isakmpfrag.c.diff?r1=1.4&r2=1.4.6.1&f=h
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-497990?
The severity of REDHAT-BUG-497990 is considered high due to the potential for a remote crash in the fragmentation code.
How do I fix REDHAT-BUG-497990?
To fix REDHAT-BUG-497990, upgrade to the latest version of ipsec-tools that includes the security fix.
What systems are affected by REDHAT-BUG-497990?
REDHAT-BUG-497990 affects systems running ipsec-tools version 0.7.2 or earlier.
What type of vulnerability is associated with REDHAT-BUG-497990?
REDHAT-BUG-497990 is associated with a remote code execution vulnerability that can lead to application crashes.
Is there a workaround for REDHAT-BUG-497990?
Currently, the recommended workaround for REDHAT-BUG-497990 is to disable the fragmentation feature in ipsec-tools until an update is applied.