Oval Definition:oval:com.redhat.rhsa:def:20140185
Revision Date:2014-02-18Version:643
Title:RHSA-2014:0185: openswan security update (Moderate)
Description:Openswan is a free implementation of Internet Protocol Security (IPsec) and Internet Key Exchange (IKE). IPsec uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks.

  • A NULL pointer dereference flaw was discovered in the way Openswan's IKE daemon processed IKEv2 payloads. A remote attacker could send specially crafted IKEv2 payloads that, when processed, would lead to a denial of service (daemon crash), possibly causing existing VPN connections to be dropped. (CVE-2013-6466)

    All openswan users are advised to upgrade to these updated packages, which contain a backported patch to correct this issue.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2013-6466
    CVE-2013-6466
    RHSA-2014:0185
    RHSA-2014:0185-00
    RHSA-2014:0185-01
    Platform(s):Red Hat Enterprise Linux 5
    Red Hat Enterprise Linux 6
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • openswan is earlier than 0:2.6.32-7.3.el5_10
  • AND openswan is signed with Red Hat redhatrelease2 key
  • openswan-doc is earlier than 0:2.6.32-7.3.el5_10
  • AND openswan-doc is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 6 is installed
  • AND
  • openswan is earlier than 0:2.6.32-27.2.el6_5
  • AND openswan is signed with Red Hat redhatrelease2 key
  • openswan-doc is earlier than 0:2.6.32-27.2.el6_5
  • AND openswan-doc is signed with Red Hat redhatrelease2 key
  • Definition Synopsis
  • Release Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • openswan-doc is earlier than 0:2.6.32-7.3.el5_10
  • AND openswan-doc is signed with Red Hat redhatrelease key
  • openswan is earlier than 0:2.6.32-7.3.el5_10
  • AND openswan is signed with Red Hat redhatrelease key
  • OR Package Information
  • Red Hat Enterprise Linux 6 Client is installed
  • OR Red Hat Enterprise Linux 6 Server is installed
  • OR Red Hat Enterprise Linux 6 Workstation is installed
  • OR Red Hat Enterprise Linux 6 ComputeNode is installed
  • AND
  • openswan-doc is earlier than 0:2.6.32-27.2.el6_5
  • AND openswan-doc is signed with Red Hat redhatrelease2 key
  • openswan is earlier than 0:2.6.32-27.2.el6_5
  • AND openswan is signed with Red Hat redhatrelease2 key
  • BACK