ipsec-tools 1:0.6.7-1.1ubuntu1.2 source package in Ubuntu

Changelog

ipsec-tools (1:0.6.7-1.1ubuntu1.2) hardy-security; urgency=low

  * SECURITY UPDATE: denial of service via fragmented packets without a
    payload.
    - src/racoon/isakmp_frag.c: validate size of payload data.
    - http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/isakmp_frag.c.diff?r1=1.4&r2=1.4.6.1&f=h
    - CVE-2009-1574
  * SECURITY UPDATE: denial of service via multiple memory leaks.
    - src/racoon/crypto_openssl.c: call X509_free().
    - src/racoon/nattraversal.c: add new natt_keepalive_delete() function
      that also frees ka->src and ka->dst.
    - http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/crypto_openssl.c.diff?r1=1.11.6.4&r2=1.11.6.5&f=u
    - http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/nattraversal.c.diff?r1=1.6&r2=1.6.6.1&f=u
    - CVE-2009-1632

 -- Marc Deslauriers <email address hidden>   Thu, 04 Jun 2009 14:41:34 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Hardy
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
net
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
ipsec-tools_0.6.7.orig.tar.gz 911.4 KiB 614174977974b6b6460b949001519daf57a7adc916b96d8e2490271fdda4a28f
ipsec-tools_0.6.7-1.1ubuntu1.2.diff.gz 256.6 KiB 089e47bbb389ed7828642637c1748e2327d7a8e5ce3829777019d71cf838961b
ipsec-tools_0.6.7-1.1ubuntu1.2.dsc 827 bytes 4201a376ae3553241231833cf8a7783ebd811c2871b50dd4872606e23bf1bd07

View changes file

Binary packages built by this source

ipsec-tools: No summary available for ipsec-tools in ubuntu hardy.

No description available for ipsec-tools in ubuntu hardy.

racoon: No summary available for racoon in ubuntu hardy.

No description available for racoon in ubuntu hardy.