CVE-2015-3204

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
01/07/2015
Last modified:
12/04/2025

Description

libreswan 3.9 through 3.12 allows remote attackers to cause a denial of service (daemon restart) via an IKEv1 packet with (1) unassigned bits set in the IPSEC DOI value or (2) the next payload value set to ISAKMP_NEXT_SAK.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libreswan:libreswan:3.9:*:*:*:*:*:*:*
cpe:2.3:a:libreswan:libreswan:3.10:*:*:*:*:*:*:*
cpe:2.3:a:libreswan:libreswan:3.11:*:*:*:*:*:*:*
cpe:2.3:a:libreswan:libreswan:3.12:*:*:*:*:*:*:*