UbuntuUpdates.org

Package "strongswan"

Name: strongswan

Description:

IPsec VPN solution metapackage

Latest version: 5.1.2-0ubuntu2.11
Release: trusty (14.04)
Level: updates
Repository: main
Homepage: http://www.strongswan.org

Links


Download "strongswan"


Other versions of "strongswan" in Trusty

Repository Area Version
base universe 5.1.2-0ubuntu2
base main 5.1.2-0ubuntu2
security universe 5.1.2-0ubuntu2.11
security main 5.1.2-0ubuntu2.11
updates universe 5.1.2-0ubuntu2.11

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 5.1.2-0ubuntu2.5 2016-10-26 15:06:34 UTC

  strongswan (5.1.2-0ubuntu2.5) trusty; urgency=medium

  * debian/patches/fix_reauth_crash.patch: auth-cfg: Fix crash after
    several reauthentications with multiple authentication rounds.
    Thanks to Tobias Brunner <email address hidden>.
    Closes LP: #1629241.

 -- Nishanth Aravamudan <email address hidden> Wed, 05 Oct 2016 15:43:30 -0700

Source diff to previous version
1629241 crash strongSwan in Ubuntu Trusty

Version: 5.1.2-0ubuntu2.4 2015-11-16 20:06:33 UTC

  strongswan (5.1.2-0ubuntu2.4) trusty-security; urgency=medium

  * SECURITY UPDATE: authentication bypass in eap-mschapv2 plugin
    - debian/patches/CVE-2015-8023.patch: only succeed authentication if
      MSK was established in
      src/libcharon/plugins/eap_mschapv2/eap_mschapv2.c.
    - CVE-2015-8023

 -- Marc Deslauriers Wed, 11 Nov 2015 08:00:11 -0500

Source diff to previous version

Version: 5.1.2-0ubuntu2.3 2015-06-08 18:06:48 UTC

  strongswan (5.1.2-0ubuntu2.3) trusty-security; urgency=medium

  * SECURITY UPDATE: user credential disclosure to rogue servers
    - debian/patches/CVE-2015-4171.patch: enforce remote authentication
      config before proceeding with own authentication in
      src/libcharon/sa/ikev2/tasks/ike_auth.c.
    - CVE-2015-4171

 -- Marc Deslauriers <email address hidden> Thu, 04 Jun 2015 07:29:42 -0400

Source diff to previous version

Version: 5.1.2-0ubuntu2.2 2015-01-05 15:06:24 UTC

  strongswan (5.1.2-0ubuntu2.2) trusty-security; urgency=medium

  * SECURITY UPDATE: denial of service via DH group 1025
    - debian/patches/CVE-2014-9221.patch: define MODP_CUSTOM outside of
      IKE DH range in src/libstrongswan/crypto/diffie_hellman.c,
      src/libstrongswan/crypto/diffie_hellman.h.
    - CVE-2014-9221
 -- Tyler Hicks <email address hidden> Fri, 19 Dec 2014 13:18:30 -0600

CVE-2014-9221 RESERVED



About   -   Send Feedback to @ubuntu_updates