Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 21: CVE-2015-3204 Critical Libreswan IPsec Security Update

fedora
Calendar Grey June 10, 2015
Dist Fedora Esm H88
The latest Libreswan patch for Fedora 21 addresses CVE-2015-3205, improving the stability of the IKEv2 protocol.
Updated to 3.13 for CVE-2015-3204

Summary

Libreswan is a free implementation of IPsec & IKE for Linux. IPsec is

the Internet Protocol Security and uses strong cryptography to provide

both authentication and encryption services. These services allow you

to build secure tunnels through untrusted networks. Everything passing

through the untrusted net is encrypted by the ipsec gateway machine and

decrypted by the gateway at the other end of the tunnel. The resulting

tunnel is a virtual private network or VPN.

This package contains the daemons and userland tools for setting up

Libreswan. To build KLIPS, see the kmod-libreswan.spec file.

Libreswan also supports IKEv2 (RFC4309) and Secure Labeling

Libreswan is based on Openswan-2.6.38 which in turn is based on FreeS/WAN-2.04

Update Information:

Updated to 3.13 for CVE-2015-3204

Change Log

* Mon Jun 1 2015 Paul Wouters - 3.13-1 - Updated to 3.13 for CVE-2015-3204

References

Fedora Update Notification FEDORA-2015-9335 2015-06-02 09:32:56
Name : libreswan Product : Fedora 21 Version : 3.13 Release : 1.fc21 URL : https://libreswan.org/ Summary : IPsec implementation with IKEv1 and IKEv2 keying protocols Description : Libreswan is a free implementation of IPsec & IKE for Linux. IPsec is the Internet Protocol Security and uses strong cryptography to provide both authentication and encryption services. These services allow you to build secure tunnels through untrusted networks. Everything passing through the untrusted net is encrypted by the ipsec gateway machine and decrypted by the gateway at the other end of the tunnel. The resulting tunnel is a virtual private network or VPN.
This package contains the daemons and userland tools for setting up Libreswan. To build KLIPS, see the kmod-libreswan.spec file.
Libreswan also supports IKEv2 (RFC4309) and Secure Labeling
Libreswan is based on Openswan-2.6.38 which in turn is based on FreeS/WAN-2.04

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update libreswan' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: libreswan
Product: Fedora 21
Version: 3.13
Release: 1.fc21
Summary: IPsec implementation with IKEv1 and IKEv2 keying protocols

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here