Where
-Infinity
0

Vendor Risk Score

See how libreswan compares to other vendors in security performance

View Risk Score →

libreswan LibreswanLibreswan contains a reachable assertion in the X.509 certificate processing path when operating in …

Risk 19
Severity
4
First published (updated )

libreswan LibreswanLibreswan contains a reachable assertion in the X.509 certificate processing path when operating in …

Risk 19
Severity
4
First published (updated )

libreswan pluto (Libreswan IKEv2)IKEv2 Denial of Service via malformed fragmentation

Risk 43
Severity
7.5
First published (updated )

libreswan LibreswanIKEv1 Denial of Service via RSA-SHA1 (PKCS#1 Version 1.5 Encrypted) authentication payload

Risk 75
Severity
8.1
First published (updated )

libreswan LibreswanIKEv2 Denial of Service via RSA-SHA1 (PKCS#1 RSASSA-PKCS1-v1_5) authentication payload

Risk 75
Severity
8.1
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

libreswan LibreswanA security issue in NM-libreswan, where we fail to sanitize the VPN configuration from a local unpri…

Risk 33
Severity
7
First published (updated )

redhat/libreswanIKEv1 default AH/ESP responder can cause libreswan to abort and restart

Risk 27
Severity
6.5
EPSS
0.04%
First published (updated )

redhat/libreswanWhen an IKEv2 Child SA REKEY packet contains an invalid IPsec protocol ID number of 0 or 1, an error…

Risk 45
Severity
7.5
First published (updated )

libreswan LibreswanNull Pointer Dereference

Risk 45
Severity
7.5
First published (updated )

redhat/libreswanNull Pointer Dereference

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

libreswan LibreswanA vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggress…

Risk 45
Severity
7.5
First published (updated )

libreswan Libreswanpluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon cras…

Risk 43
Severity
7.5
First published (updated )

libreswan LibreswanWhen an IKEv1 Aggressive Mode packet is received with only unacceptable crypto algorithms, the respo…

Risk 33
Severity
7
First published (updated )

debian/libreswanA crafted TS payload with an incorrect selector length may allow a remote attacker to cause a denial…

Risk 39
Severity
6.5
First published (updated )

Fedoraproject FedoraNull Pointer Dereference

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

debian/libreswanAn out-of-bounds buffer read flaw was found in the pluto daemon of libreswan from versions 3.27 till…

Risk 44
Severity
7.5
First published (updated )

Fedoraproject FedoraThe Libreswan Project has found a vulnerability in the processing of IKEv1 informational exchange pa…

Risk 18
Severity
3.5
First published (updated )

libreswan LibreswanNull Pointer Dereference

Risk 43
Severity
7.5
First published (updated )

libreswan LibreswanA vulnerability was found in libreswan 3.17. IKEv2 bogus proposal lacking DH transform causes pluto …

Risk 18
Severity
4
First published (updated )

Fedoraproject FedoraNull Pointer Dereference

Risk 45
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

libreswan LibreswanInput Validation

Risk 43
Severity
7.5
First published (updated )

Fedoraproject FedoraInput Validation

Risk 43
Severity
7.5
First published (updated )

libreswan LibreswanThe pluto IKE daemon in libreswan before 3.15 and Openswan before 2.6.45, when built with NSS, allow…

Risk 22
Severity
4.3
First published (updated )

libreswan LibreswanInput Validation

Risk 26
Severity
5
First published (updated )

libreswan LibreswanNull Pointer Dereference

Risk 26
Severity
5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

libreswan LibreswanInput Validation

Risk 26
Severity
5
First published (updated )

libreswan LibreswanRace Condition

Risk 79
Severity
9.3
First published (updated )

libreswan LibreswanLibreswan 3.6 allows remote attackers to cause a denial of service (crash) via a small length value …

Risk 26
Severity
5
First published (updated )

libreswan LibreswanBuffer Overflow

Risk 37
Severity
5.1
First published (updated )

libreswan LibreswanBuffer Overflow

Risk 32
Severity
7
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203