This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Summuary
CPE Namecpe:/a:openswan:openswan
Detail
VendorOpenswanFirst view 2004-12-06
ProductOpenswanLast view 2011-11-17
VersionTypeApplication
Edition 
Language 
Update 

Activity : Yearly

COMMON PLATFORM ENUMERATION : Repartition per Version

CPE NameAffected CVE
cpe:/a:openswan:openswan:2.6.361
cpe:/a:openswan:openswan:2.6.352
cpe:/a:openswan:openswan:2.6.342
cpe:/a:openswan:openswan:2.6.332
cpe:/a:openswan:openswan:2.6.322
Hide | Show 85 More...
CPE NameAffected CVE
cpe:/a:openswan:openswan:2.6.312
cpe:/a:openswan:openswan:2.6.302
cpe:/a:openswan:openswan:2.6.292
cpe:/a:openswan:openswan:2.6.285
cpe:/a:openswan:openswan:2.6.275
cpe:/a:openswan:openswan:2.6.265
cpe:/a:openswan:openswan:2.6.253
cpe:/a:openswan:openswan:2.6.241
cpe:/a:openswan:openswan:2.6.231
cpe:/a:openswan:openswan:2.6.221
cpe:/a:openswan:openswan:2.6.211
cpe:/a:openswan:openswan:2.6.203
cpe:/a:openswan:openswan:2.6.193
cpe:/a:openswan:openswan:2.6.183
cpe:/a:openswan:openswan:2.6.173
cpe:/a:openswan:openswan:2.6.164
cpe:/a:openswan:openswan:2.6.154
cpe:/a:openswan:openswan:2.6.144
cpe:/a:openswan:openswan:2.6.134
cpe:/a:openswan:openswan:2.6.124
cpe:/a:openswan:openswan:2.6.114
cpe:/a:openswan:openswan:2.6.104
cpe:/a:openswan:openswan:2.6.094
cpe:/a:openswan:openswan:2.6.084
cpe:/a:openswan:openswan:2.6.074
cpe:/a:openswan:openswan:2.6.064
cpe:/a:openswan:openswan:2.6.054
cpe:/a:openswan:openswan:2.6.044
cpe:/a:openswan:openswan:2.6.034
cpe:/a:openswan:openswan:2.6.021
cpe:/a:openswan:openswan:2.6.011
cpe:/a:openswan:openswan:2.5.181
cpe:/a:openswan:openswan:2.5.171
cpe:/a:openswan:openswan:2.5.161
cpe:/a:openswan:openswan:2.5.151
cpe:/a:openswan:openswan:2.5.141
cpe:/a:openswan:openswan:2.5.131
cpe:/a:openswan:openswan:2.5.121
cpe:/a:openswan:openswan:2.5.111
cpe:/a:openswan:openswan:2.5.101
cpe:/a:openswan:openswan:2.5.091
cpe:/a:openswan:openswan:2.5.081
cpe:/a:openswan:openswan:2.5.071
cpe:/a:openswan:openswan:2.5.061
cpe:/a:openswan:openswan:2.5.051
cpe:/a:openswan:openswan:2.5.041
cpe:/a:openswan:openswan:2.5.031
cpe:/a:openswan:openswan:2.5.021
cpe:/a:openswan:openswan:2.5.011
cpe:/a:openswan:openswan:2.5.0:sbs41
cpe:/a:openswan:openswan:2.5.01
cpe:/a:openswan:openswan:2.5.0:sbs51
cpe:/a:openswan:openswan:2.4.93
cpe:/a:openswan:openswan:2.4.81
cpe:/a:openswan:openswan:2.4.71
cpe:/a:openswan:openswan:2.4.61
cpe:/a:openswan:openswan:2.4.53
cpe:/a:openswan:openswan:2.4.44
cpe:/a:openswan:openswan:2.4.33
cpe:/a:openswan:openswan:2.4.24
cpe:/a:openswan:openswan:2.4.131
cpe:/a:openswan:openswan:2.4.121
cpe:/a:openswan:openswan:2.4.111
cpe:/a:openswan:openswan:2.4.103
cpe:/a:openswan:openswan:2.4.13
cpe:/a:openswan:openswan:2.45
cpe:/a:openswan:openswan:2.3.12
cpe:/a:openswan:openswan:2.3.02
cpe:/a:openswan:openswan:2.32
cpe:/a:openswan:openswan:2.2.11
cpe:/a:openswan:openswan:2.2.01
cpe:/a:openswan:openswan:2.22
cpe:/a:openswan:openswan:2.1.62
cpe:/a:openswan:openswan:2.1.52
cpe:/a:openswan:openswan:2.1.42
cpe:/a:openswan:openswan:2.1.22
cpe:/a:openswan:openswan:2.1.12
cpe:/a:openswan:openswan:21
cpe:/a:openswan:openswan:1.0.92
cpe:/a:openswan:openswan:1.0.81
cpe:/a:openswan:openswan:1.0.71
cpe:/a:openswan:openswan:1.0.61
cpe:/a:openswan:openswan:1.0.51
cpe:/a:openswan:openswan:1.0.41
cpe:/a:openswan:openswan:11

Related : CVE

 DateAlertAccess VectorAccess ComplexityAuthentification
42011-11-17CVE-2011-4073NetworkLowRequires ...
52011-11-17CVE-2011-3380NetworkLowNone Requ...
3.62011-05-20CVE-2011-2147LocalLowNone Requ...
6.52010-10-05CVE-2010-3753NetworkLowRequires ...
6.52010-10-05CVE-2010-3752NetworkLowRequires ...
Hide | Show 8 More...
 DateAlertAccess VectorAccess ComplexityAuthentification
6.52010-10-05CVE-2010-3308NetworkLowRequires ...
6.52010-10-05CVE-2010-3302NetworkLowRequires ...
52009-06-24CVE-2009-2185NetworkLowNone Requ...
52009-04-01CVE-2009-0790NetworkLowNone Requ...
4.42008-09-24CVE-2008-4190LocalMediumNone Requ...
7.82005-11-18CVE-2005-3671NetworkLowNone Requ...
7.22005-01-26CVE-2005-0162LocalLowNone Requ...
102004-12-06CVE-2004-0590NetworkLowNone Requ...

CWE : Common Weakness Enumeration

%idName
22% (2)CWE-78Improper Sanitization of Special Elements used in an OS Command ('O...
22% (2)CWE-20Improper Input Validation
11% (1)CWE-399Resource Management Errors
11% (1)CWE-264Permissions, Privileges, and Access Controls
11% (1)CWE-119Failure to Constrain Operations within the Bounds of a Memory Buffer
Hide | Show 2 More...
%idName
11% (1)CWE-94Failure to Control Generation of Code ('Code Injection')
11% (1)CWE-59Improper Link Resolution Before File Access ('Link Following')

Oval Markup Language : Definitions

OvalIDName
oval:org.mitre.oval:def:10078The IPSEC livetest tool in Openswan 2.4.12 and earlier, and 2.6.x through 2.6...
oval:org.mitre.oval:def:11171The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2...
oval:org.mitre.oval:def:11079The ASN.1 parser (pluto/asn1.c, libstrongswan/asn1/asn1.c, libstrongswan/asn1...

Open Source Vulnerability Database (OSVDB)

idDescription
76725Openswan Uuse-after-free Crypto Helper Handler ISAKMP Phase 1 Authentication ...
76100Openswan pluto/ike_alg.c ike_alg_enc_ok() Function ISAKMP Message IKE Packet ...
75016Openswan Multiple File Permissions Weakness Arbitrary File Write
68393Openswan Client programs/pluto/xauth.c cisco_banner Field Shell Metacharacter...
68392Openswan Client programs/pluto/xauth.c cisco_*_info Packet Shell Metacharacte...
Hide | Show 11 More...
idDescription
68385Openswan Client programs/pluto/xauth.c cisco_banner Field Remote Overflow
68384Openswan Client programs/pluto/xauth.c cisco_*_info Data Packet Handling Remo...
60992FreeS/WAN ISAKMP Protocol Unspecified Malformed Input Remote DoS (PROTOS)
60991Openswan ISAKMP Protocol Unspecified Malformed Input Remote DoS (PROTOS)
55421Openswan ASN.1 Parser Crafted X.509 Certificate Remote IKE Daemon DoS
55420strongSwan ASN.1 Parser Crafted X.509 Certificate RDN IKE Daemon Remote DoS
53209Openswan Pluto IKE Daemon Dead Peer Detection NULL Dereference Remote DoS
53208strongSwan Pluto IKE Daemon Dead Peer Detection NULL Dereference Remote DoS
49096Openswan IPSEC livetest Tool Multiple Temporary File Symlink Arbitrary File O...
13195Openswan XAUTH/PAM get_internal_addresses() Function Remote Overflow
7281Swan Products X.509 Certificate Validation Bypass and DoS

Milw0rm Exploits

idDescription
2009-07-13Openswan <= 2.4.12/2.6.16 Insecure Temp File Creation Root Exploit

ExploitDB Exploits

idDescription
9135Openswan <= 2.4.12/2.6.16 Insecure Temp File Creation Root Exploit