Re: [Users] Do you have any plan to fix a problem reported by CERT ?

From: Sam Sgro (sam_at_freeswan.org)
Date: Wed Oct 23 2002 - 00:36:33 CEST


-----BEGIN PGP SIGNED MESSAGE-----

> "Multiple IPsec implementations do not adequately validate
> authentication data".
> http://www.kb.cert.org/vuls/id/459371
>
> They also mentioned that FreeS/WAN is affected by this vulnerability.
>
> Do you have any plan to fix this vulnerability ?

Yes. The vulnerability is fixed in the next release of FreeS/WAN, 1.99, which
should be released in the next day or so. (Candidates are available, too.)

- --
Sam Sgro
sam_at_freeswan.org

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: noconv
Comment: For the matching public key, finger the Reply-To: address.

iQCVAwUBPbXS9UOSC4btEQUtAQGwpAQAtjSXj+DCusFv318BEtoE9H1+s9jCv0KV
FmXiQrYxq1U89d1xmXHJmn2R+Xy2ZkbQpl/WiXSQ3UuPHFXZICh/g+gpT0aDROnV
gCTst1Ms69yz3eVG3Cem3WjlfuW4ITNwanXv/nPiNkqXbofGccoGDcHLURmIrl32
R0+A2/y8Wzo=
=w/ek
-----END PGP SIGNATURE-----

_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.5 : Thu Oct 24 2002 - 05:20:31 CEST