rpm package
almalinux/libreswan-minimal
pkg:rpm/almalinux/libreswan-minimal
Vulnerabilities (4)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-14957 | mod | 7.5 | < 5.3.2-1.el10_2 | 5.3.2-1.el10_2 | Jul 15, 2026 | libreswan: badly formatted X.509 certificate can cause an assertion failure that crashes the daemon process | |
| CVE-2026-50722 | Hig | 8.1 | < 5.3.2-1.el10_2 | 5.3.2-1.el10_2 | Jul 2, 2026 | Libreswan, via the function RSA_authenticate_hash_signature_pkcs1_1_5_rsa(), did not correctly verify the DER encoding of the ASN.1 digest when the IKEv2 AUTH payload was encoded using RSASSA-PKCS1-v1_5 (RFC 8017). A remote attacker can use a variation on the Bleichenbacher attac | |
| CVE-2026-50721 | Hig | 8.1 | < 5.3.2-1.el10_2 | 5.3.2-1.el10_2 | Jul 2, 2026 | Libreswan, via the function RSA_authenticate_hash_signature_raw_rsa(), did not correctly verify the length of the authentication hash when the SIG payload of an IKEv1 packet was encoded using PKCS #1 RSA Encryption as per RFC 2313. A remote attacker can use a variation on the Ble | |
| CVE-2026-12413 | Hig | 7.5 | < 5.3.2-1.el10_2 | 5.3.2-1.el10_2 | Jul 2, 2026 | An invalidly formatted IKEv2 fragment causes the Libreswan pluto daemon to crash and restart. Continued exploitation would cause a denial of service. The function reassemble_v2_incoming_fragments() would ignore unknown outer payloads but still store these in a fixed size array ms |
- affected < 5.3.2-1.el10_2fixed 5.3.2-1.el10_2
libreswan: badly formatted X.509 certificate can cause an assertion failure that crashes the daemon process
- affected < 5.3.2-1.el10_2fixed 5.3.2-1.el10_2
Libreswan, via the function RSA_authenticate_hash_signature_pkcs1_1_5_rsa(), did not correctly verify the DER encoding of the ASN.1 digest when the IKEv2 AUTH payload was encoded using RSASSA-PKCS1-v1_5 (RFC 8017). A remote attacker can use a variation on the Bleichenbacher attac
- affected < 5.3.2-1.el10_2fixed 5.3.2-1.el10_2
Libreswan, via the function RSA_authenticate_hash_signature_raw_rsa(), did not correctly verify the length of the authentication hash when the SIG payload of an IKEv1 packet was encoded using PKCS #1 RSA Encryption as per RFC 2313. A remote attacker can use a variation on the Ble
- affected < 5.3.2-1.el10_2fixed 5.3.2-1.el10_2
An invalidly formatted IKEv2 fragment causes the Libreswan pluto daemon to crash and restart. Continued exploitation would cause a denial of service. The function reassemble_v2_incoming_fragments() would ignore unknown outer payloads but still store these in a fixed size array ms