From 5c311dfaab4c0172a4524ae5860106bcac33a694 Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Sat, 4 May 2024 09:05:41 +0000 Subject: [ GLSA 202405-08 ] strongSwan: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/818841 Bug: https://bugs.gentoo.org/832460 Bug: https://bugs.gentoo.org/878887 Bug: https://bugs.gentoo.org/899964 Signed-off-by: GLSAMaker Signed-off-by: Hans de Graaff --- glsa-202405-08.xml | 48 ++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 48 insertions(+) create mode 100644 glsa-202405-08.xml (limited to 'glsa-202405-08.xml') diff --git a/glsa-202405-08.xml b/glsa-202405-08.xml new file mode 100644 index 00000000..5bbf7918 --- /dev/null +++ b/glsa-202405-08.xml @@ -0,0 +1,48 @@ + + + + strongSwan: Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in strongSwan, the worst of which could possibly lead to remote code execution. + strongswan + 2024-05-04 + 2024-05-04 + 818841 + 832460 + 878887 + 899964 + remote + + + 5.9.10 + 5.9.10 + + + +

strongSwan is an IPSec implementation for Linux.

+
+ +

Multiple vulnerabilities have been discovered in strongSwan. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All strongSwan users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=net-vpn/strongswan-5.9.10" + +
+ + CVE-2021-41991 + CVE-2021-45079 + CVE-2022-40617 + CVE-2023-26463 + + graaff + graaff +
\ No newline at end of file -- cgit v1.2.3-65-gdbad