Certificate bug in open source IPsec VPN

6 May
2013
6 May
'13
8:47 p.m.
"The strongSwan open source IPsec VPN software potentially accepts invalid digital signatures and certificates for IPsec connections. The developers report that the issue affects versions 4.3.5 up to 5.0.3 – but only if the OpenSSL crypto backend is enabled using --enable-openssl; the default crypto libraries are not vulnerable." -- source: http://h-online.com/-1855695 Cheers, Peter -- Peter Reutemann, Dept. of Computer Science, University of Waikato, NZ http://www.cms.waikato.ac.nz/~fracpete/ Ph. +64 (7) 858-5174
4375
Age (days ago)
4375
Last active (days ago)
0 comments
1 participants
participants (1)
-
Peter Reutemann