ipsec-tools-0.6.5-13AXS3.1
エラータID: AXSA:2009-435:03
This is the IPsec-Tools package. You need this package in order to really use the IPsec functionality in the linux-2.5+ kernels. This package builds:
- setkey, a program to directly manipulate policies and SAs
- racoon, an IKEv1 keying daemon
Security bugs fixed with this release:
CVE-2009-1574
racoon/isakmp_frag.c in ipsec-tools before 0.7.2 allows remote attackers to cause a denial of service (crash) via crafted fragmented packets without a payload, which triggers a NULL pointer dereference.
CVE-2009-1632
Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.
Update packages.
racoon/isakmp_frag.c in ipsec-tools before 0.7.2 allows remote attackers to cause a denial of service (crash) via crafted fragmented packets without a payload, which triggers a NULL pointer dereference.
Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.
N/A
SRPMS
- ipsec-tools-0.6.5-13AXS3.1.src.rpm
MD5: 1a175ed52fb0b40e5ff912d80bd09403
SHA-256: 13f5570bdc742d5307aac75d56254ac6cabe47b25db8e37db17d4bf40b0f41d0
Size: 702.15 kB
Asianux Server 3 for x86
- ipsec-tools-0.6.5-13AXS3.1.i386.rpm
MD5: 750a8646c17ba3ea2b6a45c5f00ee28f
SHA-256: cc8316df660cbc40154b3e7ac6b2f5f5b6d83b165fa2c33d8eda323a5ccf532f
Size: 381.97 kB
Asianux Server 3 for x86_64
- ipsec-tools-0.6.5-13AXS3.1.x86_64.rpm
MD5: dea7b9b1d07dc0667076252c45176813
SHA-256: 6ea86861e0c657c52b068a9daeba71ceb5a919faf88249885672ce4a70f387be
Size: 396.65 kB