Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Fedora 44 strongSwan Important Denial of Service CVE Fixes 2026-cc6fcd3a58

fedora
Calendar Grey May 21, 2026
Dist Fedora Esm H88
Critical Fedora 44 strongSwan security update addresses multiple vulnerabilities including denial of service.
Fixes CVE-2026-25075, CVE-2026-35328, CVE-2026-35329, CVE-2026-35330, CVE-2026-35331, CVE-2026-35332, CVE-2026-35333, CVE-2026-35334

Summary

The strongSwan IPsec implementation supports both the IKEv1 and IKEv2 key

exchange protocols in conjunction with the native NETKEY IPsec stack of the

Linux kernel.

Update Information:

Fixes CVE-2026-25075, CVE-2026-35328, CVE-2026-35329, CVE-2026-35330, CVE-2026-35331, CVE-2026-35332, CVE-2026-35333, CVE-2026-35334

Change Log

* Tue May 12 2026 Paul Wouters - 6.0.6-2 - updated sources * Tue May 12 2026 Paul Wouters - 6.0.6-1 - Update to 6.0.6 for 8 CVEs

References


[ 1 ] Bug #2450414 - CVE-2026-25075 strongSwan: strongSwan: Denial of Service via integer underflow in EAP-TTLS AVP parser https://bugzilla.redhat.com/show_bug.cgi?id=2450414

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-cc6fcd3a58' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
important
Lowest
Low
Medium
High
Critical

Name: strongswan
Product: Fedora 44
Version: 6.0.6
Release: 2.fc44
Summary: An OpenSource IPsec-based VPN and TNC solution

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here