#Libreswan
RHSA-2026:57741: Important: libreswan security update

huntaegis.com
August 20, 2026 at 10:00 PM
Libreswan IPsec with PSK and NAT Traversal

This snippet configures a Libreswan IPsec tunnel using pre-shared keys (PSK) and enables NAT traversal (NAT-T) to allow connectivity when endpoints are behind NAT

https://www.valtersit.com/vault/libreswan-ipsec-with-psk-and-nat-traversal-9bbb20/
August 1, 2026 at 12:21 AM
Security updates have been issued by AlmaLinux (grafana and libreswan), Debian (openjdk-11 and openjdk-17), Fedora (opkssh, perl-Mojolicious, and rpm), Mageia (libyang, memcached, nginx,...

🔗 https://lwn.net/Articles/1085855
July 28, 2026 at 1:23 PM
Security updates for Tuesday
Security updates have been issued by **AlmaLinux** (grafana and libreswan), **Debian** (openjdk-11 and openjdk-17), **Fedora** (opkssh, perl-Mojolicious, and rpm), **Mageia** (libyang, memcached, nginx, packages, and sqlite3), **Oracle** (.NET 8.0, acl, buildah, compat-openssl11, compat-poppler022, dogtag-pki, git-lfs, glibc, go-fdo-client, golang, httpd:2.4, jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base, kernel, libpq, LibRaw, maven:3.8, mysql8.4, nodejs:22, nodejs:24, openssl, podman, poppler, python3.14, samba, sssd, tomcat, tomcat9, vim, and yggdrasil), **Red Hat** (gstreamer1-plugins-bad-free), **SUSE** (afterburn, alsa, apache-ivy, avahi, aws-nitro-enclaves-cli, chromium, cifs-utils, cockpit, cockpit-machines, cockpit-packages, cockpit- podman, cockpit-repos, cockpit-subscriptions, containerd, curl, docker-compose, freetype2, gawk, glib2, google-cloud-sap-agent, gpg2, gstreamer-plugins-bad, gzip, helm, ignition, ImageMagick, jackson-annotations, jackson-bom, jackson-core, jackson- databind, jackson-dataformats-binary, jackson-modules-base, jackson-annotations, jackson-core, jackson-databind, java-11-openjdk, jline3, joe, jq, kernel, libgcrypt, libknet-devel, libsoup, libxml2, mariadb-connector-c, mcphost, net-tools, nghttp2, opennlp, openssl-1_0_0, PackageKit, pam, patch, pcr-oracle, perl, perl-DBI, perl-HTTP-Date, python-aiohttp, python-cryptography, python-Pillow, python-pyasn1, python-soupsieve, python-tornado, python-tornado6, python-urllib3, python3, radvd, rust-keylime, s390-tools, shibboleth-sp, sssd, systemd, tiff, vim, and wpa_supplicant), and **Ubuntu** (FreeIPMI, glibc, linux-aws, linux-aws, linux-raspi, linux-aws-6.8, linux-aws-fips, linux-azure, linux-azure-6.8, linux-azure, linux-oracle, linux-azure-5.15, linux-azure-fde-5.15, linux-oracle-5.15, linux-azure-6.17, linux-azure-fde, linux-azure-fde-6.17, linux-azure-fde-6.8, linux-azure-fips, linux-hwe-6.8, linux-ibm, linux-ibm-6.8, linux-nvidia-tegra, linux-xilinx, linux-oracle-6.17, roc-toolkit, and samba).
lwn.net
July 28, 2026 at 5:36 PM
RHSA-2026:46397: Important: libreswan security update

huntaegis.com
July 27, 2026 at 3:55 AM
RHSA-2026:46396: Important: libreswan security update

huntaegis.com
July 27, 2026 at 3:36 AM
📌 CVE-2026-50722 - Libreswan, via the function RSA_authenticate_hash_signature_pkcs1_1_5_rsa(), did not correctly verify the DER encoding of the ASN.1 digest when the IK... https://www.cyberhub.blog/cves/CVE-2026-50722
CVE-2026-50722
Libreswan, via the function RSA_authenticate_hash_signature_pkcs1_1_5_rsa(), did not correctly verify the DER encoding of the ASN.1 digest when the IKEv2 AUTH payload was encoded using RSASSA-PKCS1-v1_5 (RFC 8017). A remote attacker can use a variation on the Bleichenbacher attack to forge the AUTH
www.cyberhub.blog
July 22, 2026 at 6:37 PM
📌 CVE-2026-50721 - Libreswan, via the function RSA_authenticate_hash_signature_raw_rsa(), did not correctly verify the length of the authentication hash when the SIG pay... https://www.cyberhub.blog/cves/CVE-2026-50721
CVE-2026-50721
Libreswan, via the function RSA_authenticate_hash_signature_raw_rsa(), did not correctly verify the length of the authentication hash when the SIG payload of an IKEv1 packet was encoded using PKCS #1 RSA Encryption as per RFC 2313. A remote attacker can use a variation on the Bleichenbacher attack t
www.cyberhub.blog
July 22, 2026 at 6:07 PM
Security updates for Tuesday
Security updates have been issued by **AlmaLinux** (capstone, fence-agents, gimp, glib2, hplip, httpd, jackson-annotations, jackson-core, jackson-databind, jackson-jaxrs-providers, and jackson-modules-base, libtiff, maven:3.8, pacemaker, python3.14, and webkit2gtk3), **Debian** (samba), **Fedora** (c-ares, dnsx, freerdp, gpsd, libreswan, libseccomp, libtiff, mingw-python-idna, mingw-python-pip, openssh, python-pillow, wget1, and wireshark), **Mageia** (golang, graphicsmagick, haveged, libssh2, nginx, nilfs-utils, perl-CGI-Session, perl-Imager, perl-JavaScript-Minifier-XS, php, php8.4, php8.5, python-nltk, sqlite3, and xmlstarlet), **Oracle** (.NET 10.0, .NET 9.0, container-tools:ol8, firefox, giflib, glibc, go-fdo-client, go-fdo-server, golang-github-openprinting-ipp-usb, grafana, grafana-pcp, hplip, httpd, image-builder, kernel, libtiff, mod_http2, pacemaker, perl-DBI:1.641, perl-HTTP-Daemon, php:8.2, python-markdown, ruby4.0, systemd, and thunderbird), **Red Hat** (buildah, container-tools:rhel8, dracut, golang-github-openprinting-ipp-usb, libtiff, osbuild-composer, python-urllib3, python3.12-urllib3, python3.14-urllib3, and runc), **SUSE** (389-ds, chromedriver, gstreamer-plugins-bad, libreoffice, libsuricata8_0_6, podman, python311, and sssd), and **Ubuntu** (apache2, freerdp3, freetype, libde265, libxfont, linux, linux-gcp, linux-gcp-6.8, linux-gke, linux-gkeop, linux-realtime, linux-realtime-6.8, linux, linux-gcp, linux-gcp-fips, linux-gke, linux-gkeop, linux-hwe-5.15, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-realtime, linux-xilinx-zynqmp, linux, linux-gcp, linux-gke, linux-realtime, linux-gcp-6.17, linux-realtime-6.17, linux-gcp-fips, linux-hwe-7.0, linux-nvidia-tegra-5.15, linux-oem-7.0, nginx, php8.1, php8.3, php8.5, rlottie, sqlite3, and wget).
lwn.net
July 21, 2026 at 8:49 PM
[Backport release-26.05] libreswan: 5.3.1 -> 5.3.2

https://github.com/NixOS/nixpkgs/pull/542945

#security
July 17, 2026 at 4:00 PM
July 17, 2026 at 1:31 PM
Уязвимость CVE-2026-50721 в Libreswan: угроза безопасности и способы защиты

https://kripta.biz/posts/62967BCA-D2F9-44CA-BF48-51470B4AB72B
July 3, 2026 at 5:50 PM
Уязвимость CVE-2026-12413 в Libreswan: угроза безопасности и способы защиты

https://kripta.biz/posts/1DD2CF84-1B21-498F-9C48-AD2E257F1F77
July 3, 2026 at 5:50 PM
Уязвимость CVE-2026-50722 в Libreswan: угроза безопасности и способы защиты

https://kripta.biz/posts/5587D9C0-67B5-4F23-BC77-DADB03A8D74E
July 3, 2026 at 5:50 PM
深度解析CVE-2026-50721漏洞:Libreswan的RSA认证机制缺陷及安全防护指南

https://qian.cx/posts/F2C4F9CC-D3D8-4544-9EAD-B9505BA62631
July 3, 2026 at 5:45 PM
深度解析CVE-2026-12413漏洞:Libreswan IKEv2分片处理缺陷及安全防护指南

https://qian.cx/posts/49C3B03D-40BE-497F-9425-C1E2FEFB818C
July 3, 2026 at 5:44 PM
深度解析CVE-2026-50722漏洞:Libreswan的RSA认证机制缺陷及安全影响

https://qian.cx/posts/6BA249FD-DB3D-49E5-B759-053B6E38D8E4
July 3, 2026 at 5:43 PM
LibreswanのRSA_authenticate_hash_signature_pkcs1_1_5_rsa()関数に検証不備があり、リモート攻撃者はIKEv2 AUTHペイロードを偽装し、成りす…
CVE-2026-50722 CVSS 8.1 | HIGH
NVD - CVE-2026-50722
nvd.nist.gov
July 3, 2026 at 6:27 AM
LibreSwanはIKEv1パケットでRSA署名の検証が不十分なため、リモート攻撃者によるなりすましや、サービス妨害攻撃の可能性がある。
CVE-2026-50721 CVSS 8.1 | HIGH
NVD - CVE-2026-50721
nvd.nist.gov
July 3, 2026 at 6:24 AM
LibreswanのIKEv2処理で、不正なフラグメントによりデーモンがクラッシュし、サービス拒否の可能性がある。 fragmentation=no設定がないIKEv2接続が影響を受ける。
CVE-2026-12413 CVSS 7.5 | HIGH
NVD - CVE-2026-12413
nvd.nist.gov
July 3, 2026 at 2:16 AM
CVE-2026-50721 - IKEv1 Denial of Service via RSA-SHA1 (PKCS#1 Version 1.5 Encrypted) authentication payload
CVE ID : CVE-2026-50721

Published : July 2, 2026, 9:44 p.m. | 1 hour, 29 minutes ago

Description : Libreswan, via the function RSA_authenticate_hash_signature_raw_...
CVE-2026-50721 - IKEv1 Denial of Service via RSA-SHA1 (PKCS#1 Version 1.5 Encrypted) authentication payload
Libreswan, via the function RSA_authenticate_hash_signature_raw_rsa(), did not correctly verify the length of the authentication hash when the SIG payload of an IKEv1 packet was encoded using PKCS #1 RSA Encryption as per RFC 2313. A remote attacker can use a variation on the Bleichenbacher attack to forge the SIG payload …
cvefeed.io
July 2, 2026 at 11:53 PM