openswan 1:2.4.9+dfsg-1ubuntu0.1 source package in Ubuntu
Changelog
openswan (1:2.4.9+dfsg-1ubuntu0.1) hardy-security; urgency=low * SECURITY UPDATE: symlink attack through predictable filenames in /tmp - debian/patches/02-fix-unsecure-tmp-file.dpatch: change programs/livetest/livetest.in to use mktemp for temporary file creation. Patch taken from Debian openswan 1:2.4.12+dfsg-1.3 package. - http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=496374 * SECURITY UPDATE: denial of service attack via malicious Dead Peer Detection packet - debian/patches/03-CVE-2009-0790.dpatch: adjust programs/pluto/demux.c to check for a possbile NULL value. Patch taken from Debian openswan 1:2.4.12+dfsg-1.3+lenny1 package. - CVE-2009-0790 * SECURITY UPDATE: denial of service attack via specially crafted X.509 certificate - debian/patches/04-CVE-2009-2185.dpatch: create include/oswtime.h and modify programs/pluto/asn1.c as well as lib/libopenswan/optionsfrom.c to do proper checks on certificate objects length. Patch taken from Debian openswan 1:2.4.12+dfsg-1.3+lenny2 package. - CVE-2009-2185 * SECURITY UPDATE: denial of service attack via deliberately interrupted IPSec connection attempt - debian/patches/05-2.4.9-CVE-2011-4073.dpatch: change programs/pluto/ikev1_continuations.h and programs/pluto/ikev1_quick.c to check for vanished ISAKMP SA in Quick Mode negotiation. Patch taken from Debian openswan 1:2.4.12+dfsg-1.3+lenny3 package and slightly modified. - CVE-2011-4073 (LP: #917754) -- Harald Jenny <email address hidden> Tue, 17 Jan 2012 16:53:31 +0100
Upload details
- Uploaded by:
- Harald Jenny
- Sponsored by:
- Marc Deslauriers
- Uploaded to:
- Hardy
- Original maintainer:
- Ubuntu Developers
- Architectures:
- any
- Section:
- net
- Urgency:
- Low Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
openswan_2.4.9+dfsg.orig.tar.gz | 3.7 MiB | 03de5dbb764b006c4490516a5b2dc3bab33977ef394e696e7810b94ad17e845f |
openswan_2.4.9+dfsg-1ubuntu0.1.diff.gz | 91.3 KiB | ef75bd6fc1b35ff3eacec98a64747b43f032bae3c4bb4829267bc5586f33dcc6 |
openswan_2.4.9+dfsg-1ubuntu0.1.dsc | 1.6 KiB | 9a3d8ff164196e87776b2f953208c53ef8deb82dd2cfadb34b0d30ea12d43200 |
Available diffs
Binary packages built by this source
- linux-patch-openswan: No summary available for linux-patch-openswan in ubuntu hardy.
No description available for linux-patch-
openswan in ubuntu hardy.
- openswan: No summary available for openswan in ubuntu hardy.
No description available for openswan in ubuntu hardy.
- openswan-modules-source: No summary available for openswan-modules-source in ubuntu hardy.
No description available for openswan-
modules- source in ubuntu hardy.