Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The ikev2parent_inI1outR1 function in pluto/ikev2_parent.c in libreswan before 3.7 allows remote attackers to cause a denial of service (restart) via an IKEv2 I1 notification without a KE payload.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libreswan ‘ikev2parent_inI1outR’函数输入验证漏洞
Vulnerability Description
Libreswan是软件开发者Paul Wouters所研发的一个类似于Openswan的IPsec实现,它主要用于保证数据传输中的安全性、完整性问题。 libreswan 3.6及之前的版本中的pluto/ikev2_parent.c文件中的‘ikev2parent_inI1outR’函数存在安全漏洞。远程攻击者可通过没有IE负载的IKE通知数据包利用该漏洞造成拒绝服务(重新启动)。
CVSS Information
N/A
Vulnerability Type
N/A