VDB

GCVE-110-MAGEIA-2022-30

GCVE-110-MAGEIA-2022-30
Advisory Published
Vulnetix · Advisory published January 25, 2022
Libreswan 4.2 through 4.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted IKEv1 packet because pluto/ikev1.c wrongly expects that a state object exists. (CVE-2022-23094)

Affected Products

VendorProductVersionsPlatforms
Mageiaqarte0 (affected), 4.16.0-1.mga8 (unaffected)
Mageialibreswan0 (affected), 4.6-4.mga8 (unaffected), 0 (affected), 4.6-4.mga8 (unaffected)

Browse GCVE Records

74,198 records in the GCVE database · Updated July 21, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›