EudorIACyber Intelligence
Operational monitoring Newsletter IT EN
← Back to intelligence
Technical advisory

USN-8789-1: strongSwan vulnerabilities

Official source
EudorIA operational summary

What it means

Priority 70/100

Ubuntu ha rilasciato un avviso di sicurezza (USN-8789-1) riguardante vulnerabilità in strongSwan, un'implementazione IPsec VPN. Le vulnerabilità permettono a un attaccante remoto di causare un denial of service o ottenere informazioni sensibili. Le patch sono disponibili per diverse versioni di strongSwan.

Why it matters

Per le PMI italiane, queste vulnerabilità possono compromettere la disponibilità e la riservatezza dei dati, specialmente se strongSwan è utilizzato per la gestione di connessioni sicure. L'aggiornamento delle versioni è fondamentale per mitigare i rischi.

MITRE ATT&CKT1562 · Impair Defenses *T1486 · Data Encrypted for Impact *
Brief generato da un modello locale EudorIA (qwen3:8b@workstation-gpu) a partire dal testo della fonte. Verificare sulla fonte prima di decisioni operative; le tecniche con * sono inferite dal modello. Testo parziale, dettagli non completi, fonte editoriale non specificata con precisione.

Estratto della fonte usato dal modello

Your submission was sent successfully! Close Thank you for contacting us. A member of our team will be in touch shortly. Close You have successfully unsubscribed! Close Thank you for signing up for our newsletter! In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team. Close Your preferences have been successfully updated. Close notification Please try again or file a bug report. Close USN-8789-1: strongSwan vulnerabilities Several security issues were fixed in strongSwan. strongswan - IPsec VPN solution It was discovered that strongSwan incorrectly handled PKCS#7 containers in the openssl plugin. A remote attacker could possibly use this issue to cause strongSwan to crash, resulting in a denial of service. ( CVE-2026-78123 ) It was discovered that strongSwan incorrectly handled memory when enumerating certificates in PKCS#7 containers in the openssl plugin. A remote attacker could possibly use this issue to obtain sensitive information. ( CVE-2026-78124 ) It was discovered that strongSwan incorrectly handled AKA-Synchronization-Failure messages in the eap-aka plugin. A remote attacker could possibly use this issue to cause strongSwan to crash, resulting in a denial of service. ( CVE-2026-78126 ) It was discovered that strongSwan incorrectly handled memory when stringifying IKE messages. A remote attacker... It was discovered that strongSwan incorrectly handled PKCS#7 containers in the openssl plugin. A remote att

Potential operational benefits

  • Riduzione della superficie esposta
  • Miglioramento della disponibilità dei servizi
  • Protezione dei dati sensibili
  • Riduzione del rischio di attacchi di DoS
Indications to confirm against the customer's technical and organisational perimeter.
Relevant controlsPatch managementFirewall NGFW / IPSMonitoraggio / SIEMBackup & DRSegmentazione di rete
AudienceITSOCCISO
Information centre

Translation in progress

Ubuntu Security

The official content is available in the original language. The Italian version will be published once automated checks are complete.

Text acquired from the source

It was discovered that strongSwan incorrectly handled PKCS#7 containers in the openssl plugin. A remote attacker could possibly use this issue to cause strongSwan to crash, resulting in a denial of service. (CVE-2026-78123) It was discovered that strongSwan incorrectly handled memory when enumerating certificates in PKCS#7 containers in the openssl plugin. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2026-78124) It was discovered that strongSwan incorrectly handled AKA-Synchronization-Failure messages in the eap-aka plugin. A remote attacker could possibly use this issue to cause strongSwan to crash, resulting in a denial of service. (CVE-2026-78126) It was discovered that strongSwan incorrectly handled memory when stringifying IKE messages. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2026-78127) It was discovered that strongSwan incorrectly handled PKCS#5 decryption. A remote attacker could possibly use this issue to cause strongSwan to consume excessive resources, leading to a denial of service. (CVE-2026-78129) It was discovered that strongSwan incorrectly handled attribute certificates in the x509 plugin when the issuer name was missing. A remote attacker could possibly use this issue to cause strongSwan to crash, resulting in a denial of service. (CVE-2026-78130) It was discovered that strongSwan incorrectly handled memory when parsing attribute certificates in the x509 plugin. A remote attacker could possibly use this issue to obtain sensitive information. (CVE-2026-78131) It was discovered that strongSwan incorrectly handled attribute certificates containing ietfAttrSyntax values in the x509 plugin. A remote attacker could possibly use this issue to cause strongSwan to consume exce

Source
Ubuntu Security Notices
Publishing entity
Ubuntu Security
Entity type
vendor security
Area
Global
Original language
en · translation in preparation
Publication
21/09/2026 14:16
MITRE ATT&CK
T1562, T1486
CVE
CVE-2026-78123, CVE-2026-78124, CVE-2026-78126, CVE-2026-78127, CVE-2026-78129, CVE-2026-78130, CVE-2026-78131
Technical scope

Affected products and versions

Verification in progress
Information not yet acquired.

The collector will check NVD and the available official vendor advisories.

Open the original source