VYPR

Libreswan

by Libreswan

Source repositories

CVEs (22)

  • CVE-2013-4564Jan 7, 2014
    risk 0.00cvss epss 0.03

    Libreswan 3.6 allows remote attackers to cause a denial of service (crash) via a small length value and (1) no version or (2) an invalid major number in an IKE packet.

  • CVE-2013-2052Jul 9, 2013
    risk 0.00cvss epss 0.02

    Buffer overflow in the atodn function in libreswan 3.0 and 3.1, when Opportunistic Encryption is enabled and an RSA key is being used, allows remote attackers to cause a denial of service (pluto IKE daemon crash) and possibly execute arbitrary code via crafted DNS TXT records. …

Page 2 of 2