New commits:
commit 2a91eb78a61d72c277df2a9b8aff8c145567344b
Author: Andrew Cagney <cag...@gnu.org>
Date:   Mon Mar 5 20:46:33 2018 -0500

    ikev2: split ikev2_parent_inI2outR2() into pre-and post SKEYID parts
    
    Once SKEYID has been computed call ikev2_process_state_packet()
    letting the state machine finish decrypting and processing the packet
    
    This fixes a bug where corrupt AUTH requests would cause the IKE SA
    responder to re-compute g^{xy}.

_______________________________________________
Swan-commit mailing list
Swan-commit@lists.libreswan.org
https://lists.libreswan.org/mailman/listinfo/swan-commit

Reply via email to