{"id":"MGASA-2019-0210","summary":"Updated libreswan packages fix security vulnerability","details":"The Libreswan Project has found a vulnerability in the processing of IKEv1\ninformational exchange packets which are encrypted and integrity protected\nusing the established IKE SA encryption and integrity keys, but as a\nreceiver, the integrity check value was not verified. This issue affects\nversions before 3.29 (CVE-2019-10155).\n","modified":"2026-04-16T00:11:04.060086767Z","published":"2019-07-21T18:17:27Z","upstream":["CVE-2019-10155"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2019-0210.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=25065"}],"affected":[{"package":{"name":"libreswan","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/libreswan?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.29-1.1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2019-0210.json"}},{"package":{"name":"unbound","ecosystem":"Mageia:7","purl":"pkg:rpm/mageia/unbound?arch=source&distro=mageia-7"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.9.1-1.1.mga7"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2019-0210.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}