Applying their fuzzing tool, the Orange Labs vulnerability research team found a Denial-of-Service vulnerability in the parsing of ASN.1 Relative Distinguished Names (RDNs). Malformed X.509 certificate RDNs can cause the pluto and charon IKE daemons to crash and restart. Fix availiable in the new version 4.2.16
arbeiten
strongswan-4.2.16-alt1 -> sisyphus: * Tue Jun 23 2009 Michael Shigorin <mike@altlinux> 4.2.16-alt1 - 4.2.16 fixes DoS vulnerability in the ASN.1 parser; thanks crux@ for notification (closes: #20527)
closed