--------------------------------------------------------------------------------Fedora Update Notification
FEDORA-2018-3731a89e20
2018-05-27 19:30:55.541769
--------------------------------------------------------------------------------Name        : strongswan
Product     : Fedora 28
Version     : 5.6.2
Release     : 6.fc28
URL         : https://www.strongswan.org/
Summary     : An OpenSource IPsec-based VPN and TNC solution
Description :
The strongSwan IPsec implementation supports both the IKEv1 and IKEv2 key
exchange protocols in conjunction with the native NETKEY IPsec stack of the
Linux kernel.

--------------------------------------------------------------------------------Update Information:

Resolves rhbz#1581868 CVE-2018-5388 strongswan: buffer underflow in
stroke_socket.c
--------------------------------------------------------------------------------ChangeLog:

* Thu May 24 2018 Paul Wouters  - 5.6.2-6
- Resolves rhbz#1581868 CVE-2018-5388 strongswan: buffer underflow in stroke_socket.c
* Thu May 24 2018 Paul Wouters  - 5.6.2-5
- Resolves rhbz#1574939 IKEv2 VPN connections fail to use DNS servers provided by the server
- Resolves rhbz#1449875 Strongswan on epel built without the sql plugin but with the sqlite plugin
* Sun May 20 2018 Mikhail Zabaluev  - 5.6.2-3
- Move eap-radius, sqlite, and pkcs7 plugins out of tnc-imcvs, added package
  sqlite (#1579945)
--------------------------------------------------------------------------------References:

  [ 1 ] Bug #1581868 - CVE-2018-5388 strongswan: buffer underflow in stroke_socket.c [fedora-all]
        https://bugzilla.redhat.com/show_bug.cgi?id=1581868
--------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2018-3731a89e20' at the command
line. For more information, refer to the dnf documentation available at
https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/security/
--------------------------------------------------------------------------------
_______________________________________________
package-announce mailing list -- package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5JNINJQPPFF4IQBGV77CRW6AHYFLYM5M/

Fedora 28: strongswan Security Update

May 27, 2018
Resolves rhbz#1581868 CVE-2018-5388 strongswan: buffer underflow in stroke_socket.c

Summary

The strongSwan IPsec implementation supports both the IKEv1 and IKEv2 key

exchange protocols in conjunction with the native NETKEY IPsec stack of the

Linux kernel.

Resolves rhbz#1581868 CVE-2018-5388 strongswan: buffer underflow in

stroke_socket.c

* Thu May 24 2018 Paul Wouters - 5.6.2-6

- Resolves rhbz#1581868 CVE-2018-5388 strongswan: buffer underflow in stroke_socket.c

* Thu May 24 2018 Paul Wouters - 5.6.2-5

- Resolves rhbz#1574939 IKEv2 VPN connections fail to use DNS servers provided by the server

- Resolves rhbz#1449875 Strongswan on epel built without the sql plugin but with the sqlite plugin

* Sun May 20 2018 Mikhail Zabaluev - 5.6.2-3

- Move eap-radius, sqlite, and pkcs7 plugins out of tnc-imcvs, added package

sqlite (#1579945)

[ 1 ] Bug #1581868 - CVE-2018-5388 strongswan: buffer underflow in stroke_socket.c [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1581868

su -c 'dnf upgrade --advisory FEDORA-2018-3731a89e20' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5JNINJQPPFF4IQBGV77CRW6AHYFLYM5M/

FEDORA-2018-3731a89e20 2018-05-27 19:30:55.541769 Product : Fedora 28 Version : 5.6.2 Release : 6.fc28 URL : https://www.strongswan.org/ Summary : An OpenSource IPsec-based VPN and TNC solution Description : The strongSwan IPsec implementation supports both the IKEv1 and IKEv2 key exchange protocols in conjunction with the native NETKEY IPsec stack of the Linux kernel. Resolves rhbz#1581868 CVE-2018-5388 strongswan: buffer underflow in stroke_socket.c * Thu May 24 2018 Paul Wouters - 5.6.2-6 - Resolves rhbz#1581868 CVE-2018-5388 strongswan: buffer underflow in stroke_socket.c * Thu May 24 2018 Paul Wouters - 5.6.2-5 - Resolves rhbz#1574939 IKEv2 VPN connections fail to use DNS servers provided by the server - Resolves rhbz#1449875 Strongswan on epel built without the sql plugin but with the sqlite plugin * Sun May 20 2018 Mikhail Zabaluev - 5.6.2-3 - Move eap-radius, sqlite, and pkcs7 plugins out of tnc-imcvs, added package sqlite (#1579945) [ 1 ] Bug #1581868 - CVE-2018-5388 strongswan: buffer underflow in stroke_socket.c [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1581868 su -c 'dnf upgrade --advisory FEDORA-2018-3731a89e20' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ package-announce mailing list -- package-announce@lists.fedoraproject.org To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5JNINJQPPFF4IQBGV77CRW6AHYFLYM5M/

Change Log

References

Update Instructions

Severity
Product : Fedora 28
Version : 5.6.2
Release : 6.fc28
URL : https://www.strongswan.org/
Summary : An OpenSource IPsec-based VPN and TNC solution

Related News