Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Date: Wed, 27 Aug 2008 15:14:07 -0500 Reply-To: Troy DawsonSender: Security Errata for Scientific Linux From: Troy Dawson Subject: Security ERRATA for ipsec-tools on SL3.x, SL4.x, SL5.x i386/x86_64 Comments: To: " This email address is being protected from spambots. You need JavaScript enabled to view it. "Synopsis: Important: ipsec-tools security update Issue date: 2008-08-26 CVE Names: CVE-2008-3651 CVE-2008-3652 Two denial of service flaws were found in the ipsec-tools racoon daemon. It was possible for a remote attacker to cause the racoon daemon to consume all available memory. (CVE-2008-3651, CVE-2008-3652) SL 3.0.x SRPMS: ipsec-tools-0.2.5-0.7.rhel3.5.src.rpm i386: ipsec-tools-0.2.5-0.7.rhel3.5.i386.rpm x86_64: ipsec-tools-0.2.5-0.7.rhel3.5.x86_64.rpm SL 4.x SRPMS: ipsec-tools-0.3.3-7.el4_7.src.rpm i386: ipsec-tools-0.3.3-7.el4_7.i386.rpm x86_64: ipsec-tools-0.3.3-7.el4_7.x86_64.rpm SL 5.x SRPMS: ipsec-tools-0.6.5-9.el5_2.3.src.rpm i386: ipsec-tools-0.6.5-9.el5_2.3.i386.rpm x86_64: ipsec-tools-0.6.5-9.el5_2.3.x86_64.rpm -Connie Sieh -Troy Dawson