Bugzilla – Bug 1222661
VUL-0: CVE-2024-3652: NetworkManager-libreswan: restart when using IKEv1 without specifying an esp= line
Last modified: 2024-04-11 07:40:25 UTC
The Libreswan Project was notified of an issue causing libreswan to restart when using IKEv1 without specifying an esp= line. When the peer requests AES-GMAC, libreswan's default proposal handler causes an assertion failure and crashes and restarts. IKEv2 connections are not affected. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2024-3652 https://www.cve.org/CVERecord?id=CVE-2024-3652 https://libreswan.org/security/CVE-2024-3652
This is not libreswan, closing