strongswan: security bump to version 5.3.1
authorGustavo Zacarias <gustavo@zacarias.com.ar>
Mon, 1 Jun 2015 21:43:21 +0000 (18:43 -0300)
committerPeter Korsgaard <peter@korsgaard.com>
Mon, 1 Jun 2015 22:02:00 +0000 (00:02 +0200)
Fixes:

CVE-2015-3991 - denial-of-service and potential remote code execution
vulnerability triggered by IKEv1/IKEv2 messages that contain payloads
for the respective other IKE version.
other IKE version

Signed-off-by: Gustavo Zacarias <gustavo@zacarias.com.ar>
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
package/strongswan/strongswan.hash
package/strongswan/strongswan.mk

index 626356a0bf240303df59a6693e1bce46f9f91482..e38c736e0d0b7aa3123fe0c55fd85baed83518fd 100644 (file)
@@ -1,2 +1,2 @@
-# From http://download.strongswan.org/strongswan-5.3.0.tar.bz2.md5
-md5    c52d4228231c2025d9c320d0e9990327        strongswan-5.3.0.tar.bz2
+# From http://download.strongswan.org/strongswan-5.3.1.tar.bz2.md5
+md5    66f258901a3d6c271da1a0c7fb3e5013        strongswan-5.3.1.tar.bz2
index af21ddaee2499d70b04803c00f21800d114881c2..f165eb1148f8b23401f48a50a681ed1374fa7a97 100644 (file)
@@ -4,7 +4,7 @@
 #
 ################################################################################
 
-STRONGSWAN_VERSION = 5.3.0
+STRONGSWAN_VERSION = 5.3.1
 STRONGSWAN_SOURCE = strongswan-$(STRONGSWAN_VERSION).tar.bz2
 STRONGSWAN_SITE = http://download.strongswan.org
 STRONGSWAN_LICENSE = GPLv2+