[Openswan Users] NISCC Vulnerability Advisory 273756/NISCC/ISAKMP

Albert Siersema appie at friendly.net
Thu Nov 17 10:34:57 CET 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: RIPEMD160

>>Is there any know info about this vulnerability in FreeS/WAN 2.0x?
>
> Freeswan does not support aggressive mode, so at least one of the two
> crashers we found will not be applicable. It does however likely have
> the 3des keylength bug.

Ah, but OpenS/WAN does, right ? At least it's in the code and AFAIK
MSWindows IPsec/L2TP uses it too ?

Albert
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFDfE7BKltZixSsH2QRAw8gAJ0Xn/b6X0yyZ0rcvMN+HbviCcfFNQCfX2FI
hiS+3RVpadzPeNzPRb+Cl9o=
=SGyh
-----END PGP SIGNATURE-----


More information about the Users mailing list