CVE-2026-78127
libcharon in strongSwan 4.1.2 through 6.0.7 has a missing release of memory after its effective lifetime in the IKE message parser.
Scoring
- Severity
- LOW
- CVSS base score
- 3.7
- CVSS vector
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
- CWE
- CWE-401
- Published
- 2026-09-11
- Last modified
- 2026-09-11
Affected products
- strongSwan strongSwan
Weakness type
Related vulnerabilities
- CVE-2026-78131 — strongSwan 4.2.0 through 6.0.7 has a missing release of memory after its effective lifetime in the...
- CVE-2026-78124 — strongSwan 5.0.2 through 6.0.7 allows PKCS#7 certificate enumeration in the openssl plugin that...
- CVE-2026-69781 — Windows DHCP Client Denial of Service Vulnerability
- CVE-2026-69809 — Windows Active Directory Domain Services Denial of Service Vulnerability
- CVE-2026-69497 — Windows DHCP Server Denial of Service Vulnerability
- CVE-2026-69405 — Windows DHCP Server Denial of Service Vulnerability
- CVE-2026-70065 — Windows DHCP Server Denial of Service Vulnerability
- CVE-2026-69588 — Windows TCP/IP Denial of Service Vulnerability