Denial of Service Vulnerability in Openswan and Strongswan IPsec Daemons
CVE-2009-0790

Currently unrated

Key Information:

Vendor

Strongswan

Vendor
CVE Published:
1 April 2009

What is CVE-2009-0790?

The Pluto IKE daemon in Openswan and Strongswan IPsec allows remote attackers to induce a denial of service by sending malformed Dead Peer Detection (DPD) IPsec IKE notification messages. This action can cause a crash and subsequent restart of the daemon, resulting from a NULL pointer dereference tied to inconsistent ISAKMP state and the absence of a phase2 state association during DPD processing.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

EPSS Score

10% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.