CVE-2010-3302

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
05/10/2010
Last modified:
11/04/2025

Description

Buffer overflow in programs/pluto/xauth.c in the client in Openswan 2.6.25 through 2.6.28 might allow remote authenticated gateways to execute arbitrary code or cause a denial of service via long (1) cisco_dns_info or (2) cisco_domain_info data in a packet.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:xelerance:openswan:2.6.25:*:*:*:*:*:*:*
cpe:2.3:a:xelerance:openswan:2.6.26:*:*:*:*:*:*:*
cpe:2.3:a:xelerance:openswan:2.6.27:*:*:*:*:*:*:*
cpe:2.3:a:xelerance:openswan:2.6.28:*:*:*:*:*:*:*