PT-2025-44223 · Unknown+3 · Charon-Systemd+16

Published

2025-01-01

·

Updated

2026-01-22

·

CVE-2025-62291

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions strongSwan versions 5.9.13-2ubuntu4.25.04.1
Description The strongSwan client had an incorrect handling of EAP-MSCHAPv2 failure requests. An attacker could potentially cause a denial of service, or possibly execute arbitrary code, by tricking a user or automated system into connecting to a malicious server.
Recommendations Run sudo pro fix USN-7841-1 to fix the vulnerability. Update to the following package versions: charon-cmd - 5.9.13-2ubuntu4.25.04.1 charon-systemd - 5.9.13-2ubuntu4.25.04.1 libcharon-extauth-plugins - 5.9.13-2ubuntu4.25.04.1 libcharon-extra-plugins - 5.9.13-2ubuntu4.25.04.1 libstrongswan - 5.9.13-2ubuntu4.25.04.1 libstrongswan-extra-plugins - 5.9.13-2ubuntu4.25.04.1 libstrongswan-standard-plugins - 5.9.13-2ubuntu4.25.04.1 strongswan - 5.9.13-2ubuntu4.25.04.1 strongswan-charon - 5.9.13-2ubuntu4.25.04.1 strongswan-libcharon - 5.9.13-2ubuntu4.25.04.1 strongswan-nm - 5.9.13-2ubuntu4.25.04.1 strongswan-pki - 5.9.13-2ubuntu4.25.04.1 strongswan-starter - 5.9.13-2ubuntu4.25.04.1 strongswan-swanctl - 5.9.13-2ubuntu4.25.04.1

Fix

DoS

Integer Underflow

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

AZL-74660
AZL-74766
BDU:2026-02400
CVE-2025-62291
DLA-4359-1
DSA-6041-1
MGASA-2025-0272
OPENSUSE-SU-2025:15681-1
OPENSUSE-SU-2025:20132-1
SUSE-SU-2025:21167-1
SUSE-SU-2025:3834-1
SUSE-SU-2025:3855-1
SUSE-SU-2025:3856-1
SUSE-SU-2025:3857-1
SUSE-SU-2025:3873-1
SUSE-SU-2025:3904-1
SUSE-SU-2025_21167-1
SUSE-SU-2025_3834-1
SUSE-SU-2025_3855-1
SUSE-SU-2025_3856-1
SUSE-SU-2025_3857-1
SUSE-SU-2025_3873-1
SUSE-SU-2025_3904-1
USN-7841-1

Affected Products

Linuxmint
Red Os
Ubuntu
Charon-Cmd
Charon-Systemd
Libcharon-Extauth-Plugins
Libcharon-Extra-Plugins
Libstrongswan
Libstrongswan-Extra-Plugins
Libstrongswan-Standard-Plugins
Strongswan
Strongswan-Charon
Strongswan-Libcharon
Strongswan-Nm
Strongswan-Pki
Strongswan-Starter
Strongswan-Swanctl