MEDIUM 5.9 NVD
CVE-2026-78126
strongSwan 4.1.10 through 6.0.7 allows a NULL pointer dereference in the eap-aka plugin.
strongSwan 4.1.10 through 6.0.7 allows a NULL pointer dereference in the eap-aka plugin.
Remediation
$ sudo apt install --only-upgrade strongswanReferences
- https://github.com/strongswan/strongswan/releases/tag/6.1.0
- https://www.strongswan.org/blog/2026/09/07/strongswan-vulnerability-(cve-2026-78126).html
This medium severity vulnerability with a CVSS score of 5.9 was published on 2026-09-11 via NVD. A remediation command is available below.
vulnfeed aggregates 13138 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.