Explore top 10 tips to secure your open-source projects now. Read More

×
Alerts This Week
Warning Icon 1 598
Alerts This Week
Warning Icon 1 598

Oracle Linux 8 ELSA-2023-3095 Moderate: Libreswan Remote Denial of Service

oracle
Calendar Grey May 26, 2023
Scroller Oracle
The Oracle Linux Security Advisory ELSA-2023-3096 concerns a significant update for openssl that mitigates potential vulnerabilities allowing for remote exploitation.
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:

Summary

[4.9-2.0.1.2] - Add libreswan-oracle.patch to detect Oracle Linux distro [4.9-2.2] - Update libreswan-4.9-2176248-authby-rsasig.patch [4.9-2.1] - Resolves: rhbz#2187647 authby=rsasig fails in FIPS policy [4.9-2] - Fix CVE-2023-23009: remote DoS via crafted TS payload with an incorrect selector length (rhbz#2186127)

SRPMs

https://oss.oracle.com:443/ol8/SRPMS-updates//libreswan-4.9-2.0.1.el8_8.2.src.rpm

x86_64

libreswan-4.9-2.0.1.el8_8.2.x86_64.rpm

aarch64

libreswan-4.9-2.0.1.el8_8.2.aarch64.rpm

Related CVEs: CVE-2023-23009

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.