strongSwan 5.2.2 and 5.3.0 allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code.
Weaknesses in this category are typically found in functionality that processes data. Data processing is the manipulation of input to retrieve or save information.
Link | Tags |
---|---|
http://lists.fedoraproject.org/pipermail/package-announce/2015-August/164276.html | third party advisory vendor advisory |
http://lists.fedoraproject.org/pipermail/package-announce/2015-August/164278.html | third party advisory vendor advisory |
https://www.strongswan.org/blog/2015/06/01/strongswan-vulnerability-%28cve-2015-3991%29.html | |
https://bugzilla.redhat.com/show_bug.cgi?id=1222815 | issue tracking third party advisory |
http://www.securityfocus.com/bid/76861 | vdb entry third party advisory |