UbuntuUpdates.org

Package "libcharon-extauth-plugins"

Name: libcharon-extauth-plugins

Description:

strongSwan charon library (extended authentication plugins)

Latest version: 6.0.1-6ubuntu4.2
Release: questing (25.10)
Level: security
Repository: main
Head package: strongswan
Homepage: http://www.strongswan.org

Links


Download "libcharon-extauth-plugins"


Other versions of "libcharon-extauth-plugins" in Questing

Repository Area Version
base main 6.0.1-6ubuntu4
updates main 6.0.1-6ubuntu4.1

Changelog

Version: 6.0.1-6ubuntu4.2 2026-03-23 20:08:28 UTC

  strongswan (6.0.1-6ubuntu4.2) questing-security; urgency=medium

  * SECURITY UPDATE: Integer Underflow When Handling EAP-TTLS AVP
    - debian/patches/CVE-2026-25075.patch: prevent crash if AVP length
      header field is invalid in
      src/libcharon/plugins/eap_ttls/eap_ttls_avp.c.
    - CVE-2026-25075

 -- Marc Deslauriers <email address hidden> Wed, 11 Mar 2026 09:13:39 -0400

Source diff to previous version

Version: 6.0.1-6ubuntu4.1 2025-10-27 18:08:33 UTC

  strongswan (6.0.1-6ubuntu4.1) questing-security; urgency=medium

  * SECURITY UPDATE: Buffer Overflow When Handling EAP-MSCHAPv2 Failure
    Requests
    - debian/patches/CVE-2025-62291.patch: fix length check for Failure
      Request packets on the client in
      src/libcharon/plugins/eap_mschapv2/eap_mschapv2.c.
    - CVE-2025-62291

 -- Marc Deslauriers <email address hidden> Tue, 21 Oct 2025 10:11:00 -0400




About   -   Send Feedback to @ubuntu_updates