UbuntuUpdates.org

Package "strongswan"

Name: strongswan

Description:

IPsec VPN solution metapackage

Latest version: 6.0.1-6ubuntu4.2
Release: questing (25.10)
Level: security
Repository: main
Homepage: http://www.strongswan.org

Links


Download "strongswan"


Other versions of "strongswan" in Questing

Repository Area Version
base main 6.0.1-6ubuntu4
base universe 6.0.1-6ubuntu4
security universe 6.0.1-6ubuntu4.2
updates main 6.0.1-6ubuntu4.2
updates universe 6.0.1-6ubuntu4.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 6.0.1-6ubuntu4.2 2026-03-23 20:08:28 UTC

  strongswan (6.0.1-6ubuntu4.2) questing-security; urgency=medium

  * SECURITY UPDATE: Integer Underflow When Handling EAP-TTLS AVP
    - debian/patches/CVE-2026-25075.patch: prevent crash if AVP length
      header field is invalid in
      src/libcharon/plugins/eap_ttls/eap_ttls_avp.c.
    - CVE-2026-25075

 -- Marc Deslauriers <email address hidden> Wed, 11 Mar 2026 09:13:39 -0400

Source diff to previous version

Version: 6.0.1-6ubuntu4.1 2025-10-27 18:08:33 UTC

  strongswan (6.0.1-6ubuntu4.1) questing-security; urgency=medium

  * SECURITY UPDATE: Buffer Overflow When Handling EAP-MSCHAPv2 Failure
    Requests
    - debian/patches/CVE-2025-62291.patch: fix length check for Failure
      Request packets on the client in
      src/libcharon/plugins/eap_mschapv2/eap_mschapv2.c.
    - CVE-2025-62291

 -- Marc Deslauriers <email address hidden> Tue, 21 Oct 2025 10:11:00 -0400




About   -   Send Feedback to @ubuntu_updates