CVE Vulnerabilities

CVE-2014-2891

Published: May 07, 2014 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
4 MODERATE
AV:N/AC:L/Au:S/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM

strongSwan before 5.1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a crafted ID_DER_ASN1_DN ID payload.

Affected Software

Name Vendor Start Version End Version
Strongswan Debian * 5.1.2 (including)
Strongswan Strongswan * 5.1.1 (including)
Strongswan Strongswan 5.0.0 (including) 5.0.0 (including)
Strongswan Strongswan 5.0.1 (including) 5.0.1 (including)
Strongswan Strongswan 5.0.2 (including) 5.0.2 (including)
Strongswan Strongswan 5.0.3 (including) 5.0.3 (including)
Strongswan Strongswan 5.0.4 (including) 5.0.4 (including)
Strongswan Strongswan 5.1.0 (including) 5.1.0 (including)
Strongswan Ubuntu precise *
Strongswan Ubuntu quantal *
Strongswan Ubuntu saucy *
Strongswan Ubuntu upstream *

References