Vulnerabilities > Libreswan > Libreswan > 4.9

DATE CVE VULNERABILITY TITLE RISK
2023-08-25 CVE-2023-38710 Unspecified vulnerability in Libreswan
An issue was discovered in Libreswan before 4.12.
network
low complexity
libreswan
6.5
2023-08-25 CVE-2023-38711 NULL Pointer Dereference vulnerability in Libreswan
An issue was discovered in Libreswan before 4.12.
network
low complexity
libreswan CWE-476
6.5
2023-08-25 CVE-2023-38712 NULL Pointer Dereference vulnerability in Libreswan
An issue was discovered in Libreswan 3.x and 4.x before 4.12.
network
low complexity
libreswan CWE-476
6.5
2023-05-29 CVE-2023-30570 Resource Exhaustion vulnerability in Libreswan
pluto in Libreswan before 4.11 allows a denial of service (responder SPI mishandling and daemon crash) via unauthenticated IKEv1 Aggressive Mode packets.
network
low complexity
libreswan CWE-400
7.5
2023-02-21 CVE-2023-23009 Resource Exhaustion vulnerability in multiple products
Libreswan 4.9 allows remote attackers to cause a denial of service (assert failure and daemon restart) via crafted TS payload with an incorrect selector length.
network
low complexity
libreswan debian CWE-400
6.5