ipsec-tools 1:0.7-2.1ubuntu1.9.04.1 source package in Ubuntu

Changelog

ipsec-tools (1:0.7-2.1ubuntu1.9.04.1) jaunty-security; urgency=low

  * SECURITY UPDATE: denial of service via fragmented packets without a
    payload.
    - src/racoon/isakmp_frag.c: validate size of payload data.
    - http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/isakmp_frag.c.diff?r1=1.4&r2=1.4.6.1&f=h
    - CVE-2009-1574
  * SECURITY UPDATE: denial of service via multiple memory leaks.
    - src/racoon/crypto_openssl.c: call X509_free().
    - src/racoon/nattraversal.c: add new natt_keepalive_delete() function
      that also frees ka->src and ka->dst.
    - http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/crypto_openssl.c.diff?r1=1.11.6.4&r2=1.11.6.5&f=u
    - http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/nattraversal.c.diff?r1=1.6&r2=1.6.6.1&f=u
    - CVE-2009-1632

 -- Marc Deslauriers <email address hidden>   Thu, 04 Jun 2009 14:10:48 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Jaunty
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
net
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
ipsec-tools_0.7.orig.tar.gz 836.2 KiB eac57d9715e0645113b2ffa3b10753068e60ad4fc0bcdd254135a1d003529fba
ipsec-tools_0.7-2.1ubuntu1.9.04.1.diff.gz 64.9 KiB d3d6832b2421e477c14613cdc29cb5dfe8d568f1a1ec3c29b4677889bf51f82a
ipsec-tools_0.7-2.1ubuntu1.9.04.1.dsc 1.2 KiB 2476ba85eb55074270657228d7af2cc67fcd100de923758d44c07844e5273b8b

View changes file

Binary packages built by this source

ipsec-tools: No summary available for ipsec-tools in ubuntu jaunty.

No description available for ipsec-tools in ubuntu jaunty.

racoon: No summary available for racoon in ubuntu jaunty.

No description available for racoon in ubuntu jaunty.