Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-91779.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-91779
Upstream
Published
2026-07-02T22:16:42Z
Modified
2026-08-30T05:26:50Z
Summary
CVE-2026-12413 affecting package libreswan for versions less than 4.15-2
Details

An invalidly formatted IKEv2 fragment causes the Libreswan pluto daemon to crash and restart. Continued exploitation would cause a denial of service. The function reassemblev2incomingfragments() would ignore unknown outer payloads but still store these in a fixed size array msgdigest.digest[PAYLIMIT]. An off-by-one error in the assertion PASSERT(logger, md->digest_roof < elemsof(md->digest)) causes the daemon to abort. No remote code execution is possible. Any configuration that allows IKEv2 connections that do not set fragmentation=no are vulnerable. IKEv1 is not affected.

References

Affected packages

Azure Linux:3 / libreswan

Package

Name
libreswan
Purl
pkg:rpm/azure-linux/libreswan

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.15-2

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-91779.json"