Buffer overflow in programs/pluto/xauth.c in the client in Openswan 2.6.25 through 2.6.28 might allow remote authenticated gateways to execute arbitrary code or cause a denial of service via long (1) cisco_dns_info or (2) cisco_domain_info data in a packet.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2010-10-05 22:00
Updated : 2024-02-04 17:54
NVD link : CVE-2010-3302
Mitre link : CVE-2010-3302
CVE.ORG link : CVE-2010-3302
JSON object : View
Products Affected
xelerance
- openswan
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer