[CLSA-2025:1757947429] libreswan: Fix of CVE-2023-38711
Type:
security
Severity:
Moderate
Release date:
2025-09-15 14:43:53 UTC
Description:
- CVE-2023-38711: fix a NULL pointer dereference in IKEv1 Quick Mode with ID_IPV4_ADDR/ID_IPV6_ADDR that causes a crash and restart of the pluto daemon when it receives an IDcr payload with ID_FQDN
Updated packages:
  • libreswan-4.9-4.el9_2.tuxcare.els3.x86_64.rpm
    sha:7744217726261c9e5c24079a2ae53a1dc005e5e6dd5cb50ab484d47115d7ea48
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.