Alerts This Week
Warning Icon 1 775
Alerts This Week
Warning Icon 1 775

openSUSE NetworkManager-libreswan Denial of Service Fix for CVE-2024-9050

opensuse
Calendar Grey June 10, 2026
Dist Opensuse Esm H88
Explore the important update for openSUSE's NetworkManager-libreswan fixing CVE-2024-9050 with patching instructions.
An update that fixes one vulnerability is now available.

Description

This update for NetworkManager-libreswan fixes the following issues:

- Update to version 1.2.24 (boo#1232040):

+ Fixed formatting of ipsec.conf snippet. This is a security issue with

severity of "Important." (CVE-2024-9050).

+ Added support for "require-id-on-certificate" setting.

+ Updated translations.

- Changes from version 1.2.22:

+ Add IPv6 support.

- Changes from version 1.2.20:

+ Support setting "leftmodecfgclient" to "no"

+ Support for the "type", "hostaddrfamily" and "clientaddrfamily",

"leftsubnet" and "rightcert" parameters.

- Changes from version 1.2.18:

+ Drop libnm-glib compatibility (NetworkManager < 1.0).

+ Add support for the "authby", "dpdaction", "dpddelay", "dpdtimeout",

"ipsec-interface" parameters.

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP7:

zypper in -t patch openSUSE-2026-200=1

Package List

- openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64):

NetworkManager-libreswan-1.2.24-bp157.3.3.1

NetworkManager-libreswan-gnome-1.2.24-bp157.3.3.1

- openSUSE Backports SLE-15-SP7 (noarch):

NetworkManager-libreswan-lang-1.2.24-bp157.3.3.1

References

https://www.suse.com/security/cve/CVE-2024-9050.html

https://bugzilla.suse.com/1232040

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2026:0200-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP7

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here