CVE-2010-3753

Publication date

2010-10-05 21:00:00

Family

mitre

State

PUBLISHED

Description

programs/pluto/xauth.c in the client in Openswan 2.6.26 through 2.6.28 allows remote authenticated gateways to execute arbitrary commands via shell metacharacters in the cisco_banner (aka server_banner) field, a different vulnerability than CVE-2010-3308.