PT-2010-1068 · Unknown+2 · Openswan-Debuginfo+3

Published

2010-10-05

·

Updated

2019-07-29

·

CVE-2010-3753

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Openswan versions 2.6.24 through 2.6.28 Openswan-debuginfo versions 2.6.24 Openswan-doc versions 2.6.24
Description The issue affects the confidentiality, integrity, and availability of protected information. It can be exploited remotely by an authenticated attacker. The vulnerability in the client in Openswan allows remote authenticated gateways to execute arbitrary commands via shell metacharacters in the cisco banner (aka server banner) field in the xauth.c file.
Recommendations For Openswan versions 2.6.24 through 2.6.28, consider disabling the vulnerable function until a patch is available. For Openswan-debuginfo versions 2.6.24, restrict access to the vulnerable module to minimize the risk of exploitation. For Openswan-doc versions 2.6.24, avoid using the vulnerable parameters in the affected API endpoints until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

OS Command Injection

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-06481
BDU:2015-06482
BDU:2015-06483
CVE-2010-3753
RHSA-2010:0892
RHSA-2010_0892

Affected Products

Openswan
Openswan-Debuginfo
Openswan-Doc
Red Hat