Oval Definition:oval:com.redhat.rhsa:def:20080849
Revision Date:2008-08-26Version:638
Title:RHSA-2008:0849: ipsec-tools security update (Important)
Description:The ipsec-tools package is used in conjunction with the IPsec functionality in the Linux kernel and includes racoon, an IKEv1 keying daemon.

  • Two denial of service flaws were found in the ipsec-tools racoon daemon. It was possible for a remote attacker to cause the racoon daemon to consume all available memory. (CVE-2008-3651, CVE-2008-3652)

    Users of ipsec-tools should upgrade to this updated package, which contains backported patches that resolve these issues.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2008-3651
    CVE-2008-3652
    RHSA-2008:0849
    RHSA-2008:0849-01
    RHSA-2008:0849-01
    Platform(s):Red Hat Enterprise Linux 3
    Red Hat Enterprise Linux 4
    Red Hat Enterprise Linux 5
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND ipsec-tools is earlier than 0:0.2.5-0.7.rhel3.5
  • AND ipsec-tools is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND ipsec-tools is earlier than 0:0.3.3-7.el4_7
  • AND ipsec-tools is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND ipsec-tools is earlier than 0:0.6.5-9.el5_2.3
  • AND ipsec-tools is signed with Red Hat redhatrelease key
  • Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND ipsec-tools is earlier than 0:0.3.3-7.el4_7
  • AND ipsec-tools is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND ipsec-tools is earlier than 0:0.6.5-9.el5_2.3
  • AND ipsec-tools is signed with Red Hat redhatrelease2 key
  • BACK