USN-8789-1: strongSwan vulnerabilities
Ubuntu patches strongSwan vulnerabilities allowing remote crashes (CVE-2026-78123) and information disclosure (CVE-2026-78124).
Ubuntu Security Notice USN-8789-1 patches vulnerabilities in the strongSwan VPN software. CVE-2026-78123 allows a remote attacker to crash the service via a malformed PKCS#7 container, while CVE-2026-78124 enables information disclosure through improper memory handling.
- Ubuntu security notice for strongSwan VPN software.
- CVE-2026-78123 allows remote crash via malformed PKCS#7 containers (DoS).
- CVE-2026-78124 allows remote memory leak to obtain sensitive information.
- Vulnerabilities are in the openssl and eap-aka plugins.
Vulnerabilities mentionedAll →
- CVE-2026-781235.9—Remote DoS via Expired Pointer Dereference in strongSwan PKCS#7 Parsingpublished · strongSwan+1 related
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
CVE-2026-78123+1 related CVE | Remote DoS via Expired Pointer Dereference in strongSwan PKCS#7 Parsing strongSwan 5.0.2 through 6.0.7 contains an expired pointer dereference (a use-after-free class flaw, CWE-825) in the code that parses PKCS#7 containers in the openssl crypto plugin. An unauthenticated remote attacker can trigger it by supplying a specially crafted PKCS#7-wrapped certificate payload during an IKE/IPsec negotiation, though the CVSS attack complexity is rated high. Successful exploitation crashes the VPN daemon, denying service to tunnel users, while confidentiality and integrity are unaffected (C:N/I:N/A:H). Any strongSwan deployment built with the openssl plugin, the default in most Linux distribution packages, is affected, and Ubuntu has shipped fixes via USN-8789-1. No public proof of concept is known, the issue is not on CISA's KEV list, and there is no indication of exploitation in the wild. |
It was discovered that strongSwan incorrectly handled PKCS#7 containers in the openssl plugin. A remote attacker could possibly use this issue to cause strongSwan to crash, resulting in a denial of service. (CVE-2026-78123) It was discovered that strongSwan incorrectly handled memory when enumerating certificates in PKCS#7 containers in the openssl plugin. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2026-78124) It was discovered that strongSwan incorrectly handled AKA-Synchronization-Failure messages in the eap-aka plugin. A remote attacker could possibly use this issue to cause strongSwan to crash, resulting in a denial of service.…
This source does not provide full text. Read it at ubuntu.com.