### Package information | 软件包信息 包名 | 版本 -- | -- strongswan | [6.0.1-6+deb13u6deepin1](https://github.com/deepin-community/strongswan/commit/da330878b364baf7194b303ed94cedde24f1379d) ### Package repository address | 软件包仓库地址 deb [trusted=yes] https://ci.deepin.com/repo/obs/deepin:/CI:/TestingIntegration:/test-integration-pr-4367/testing/ ./ ### Changelog | 更新信息 #### strongswan (6.0.1-6+deb13u6deepin1) unstable; urgency=medium * fix(cve): CVE-2026-78135 - ikev2: Properly reject CREATE_CHILD_SA requests on unestablished IKE_SAs Upstream: https://download.strongswan.org/security/CVE-2026-78135/strongswan- 5.9.7-6.0.7_early_create_child_sa.patch * fix(cve): CVE-2026-78124 - openssl: Fix memory leaks after enumerating certificates in PKCS#7 container Upstream: https://download.strongswan.org/security/CVE-2026-78124/strongswan- 5.0.2-6.0.7_openssl_pkcs7_certs_leak.patch * fix(cve): CVE-2026-78123 - openssl: Fix undefined memory access when verifying PKCS#7 containers Upstream: https://download.strongswan.org/security/CVE-2026-78123/strongswan- 5.0.2-6.0.7_openssl_pkcs7_info_init.patch * fix(cve): CVE-2026-78134 - eap-ttls/peap: Return auth-cfg with details on TLS and inner EAP method Upstream: https://download.strongswan.org/security/CVE-2026-78134/strongswan- 5.5.1-5.9.9_eap_inner_auth_cfg.patch
Package information | 软件包信息
Package repository address | 软件包仓库地址
Changelog | 更新信息
strongswan (6.0.1-6+deb13u6deepin1) unstable; urgency=medium
on unestablished IKE_SAs Upstream:
https://download.strongswan.org/security/CVE-2026-78135/strongswan-
5.9.7-6.0.7_early_create_child_sa.patch
certificates in PKCS#7 container Upstream:
https://download.strongswan.org/security/CVE-2026-78124/strongswan-
5.0.2-6.0.7_openssl_pkcs7_certs_leak.patch
verifying PKCS#7 containers Upstream:
https://download.strongswan.org/security/CVE-2026-78123/strongswan-
5.0.2-6.0.7_openssl_pkcs7_info_init.patch
TLS and inner EAP method Upstream:
https://download.strongswan.org/security/CVE-2026-78134/strongswan-
5.5.1-5.9.9_eap_inner_auth_cfg.patch