Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-4073
HistoryNov 17, 2011 - 12:00 a.m.

CVE-2011-4073

2011-11-1700:00:00
ubuntu.com
ubuntu.com
9

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

EPSS

0.01

Percentile

83.9%

Use-after-free vulnerability in the cryptographic helper handler
functionality in Openswan 2.3.0 through 2.6.36 allows remote authenticated
users to cause a denial of service (pluto IKE daemon crash) via vectors
related to the (1) quick_outI1_continue and (2) quick_outI1 functions.

OSVersionArchitecturePackageVersionFilename
ubuntu8.04noarchopenswan< 1:2.4.9+dfsg-1ubuntu0.1UNKNOWN
ubuntu11.04noarchopenswan< 1:2.6.28+dfsg-5squeeze1build0.11.04.1UNKNOWN

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:N/I:N/A:P

EPSS

0.01

Percentile

83.9%