Candidate: CVE-2015-3991 CRD: 2015-06-01 12:00:00 UTC PublicDate: 2017-09-07 20:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3991 https://www.strongswan.org/blog/2015/06/01/strongswan-vulnerability-%28cve-2015-3991%29.html Description: strongSwan 5.2.2 and 5.3.0 allows remote attackers to cause a denial of service (daemon crash) or execute arbitrary code. Ubuntu-Description: Notes: mdeslaur> 5.2.2+ only Bugs: Priority: medium Discovered-by: Javantea Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_strongswan: upstream: http://download.strongswan.org/security/CVE-2015-3991/strongswan-5.2.2-5.3.0_unknown_payload.patch upstream_strongswan: released (5.3.1) precise_strongswan: not-affected trusty_strongswan: not-affected trusty/esm_strongswan: not-affected utopic_strongswan: not-affected vivid_strongswan: not-affected devel_strongswan: not-affected (5.1.2-0ubuntu5)