CVE Published: 11/04/2024 |
CVE Updated: 29/10/2024 |
CVE Year: 2024 Source: libreswan |
Vendor: The Libreswan Project (www.libreswan.org) |
Product: libreswan Status : PUBLISHED
CVE-2024-3652 Description
The Libreswan Project was notified of an issue causing libreswan to restart when using IKEv1 without specifying an esp= line. When the peer requests AES-GMAC, libreswan\'s default proposal handler causes an assertion failure and crashes and restarts. IKEv2 connections are not affected.