A vulnerability was found in the libreswan library. This security issue occurs when an IKEv1 Aggressive Mode packet is received with only unacceptable crypto algorithms, and the response packet is not sent with a zero responder SPI. When a subsequent packet is received where the sender reuses the libreswan responder SPI as its own initiator SPI, the pluto daemon state machine crashes. No remote code execution is possible. This CVE exists because of a CVE-2023-30570 security regression for libreswan package in Red Hat Enterprise Linux 8.8 and Red Hat Enterprise Linux 9.2.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade libreswan | May 23, 2023 | May 17, 2023 |
| Centos_linux | — | Upgrade libreswanUpgrade libreswan-debuginfoUpgrade libreswan-debugsource | May 17, 2023 | May 16, 2023 |
| Oracle_linux | — | Upgrade libreswan | May 18, 2023 | May 9, 2023 |
| Redhat Openshift | — | Upgrade libreswan | Jan 10, 2025 | May 9, 2023 |
| Redhat_linux | — | Upgrade libreswan-debuginfoUpgrade libreswanUpgrade libreswan-debugsource | May 17, 2023 | May 16, 2023 |
| Rocky_linux | — | Upgrade libreswanUpgrade libreswan-debugsourceUpgrade libreswan-debuginfo | Mar 5, 2024 | May 17, 2023 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub