Bug ID 474751: IKEv1 daemon crashes when flushing SAs

Last Modified: Sep 13, 2023

Affected Product(s):
BIG-IP TMOS(all modules)

Known Affected Versions:
11.5.1 HF1, 11.5.1 HF2, 11.5.1 HF3, 11.5.1 HF4, 11.5.1 HF5, 11.5.1 HF6, 11.5.1 HF7, 11.5.1 HF8, 11.5.1 HF9, 11.5.1 HF10, 11.5.1 HF11, 11.5.2 HF1, 11.5.3 HF1, 11.5.3 HF2, 11.5.4 HF1, 11.5.4 HF2, 11.5.4 HF3, 11.5.4 HF4, 12.1.0 HF1, 12.1.0 HF2, 12.1.1 HF1, 12.1.1 HF2, 12.1.2 HF1, 12.1.2 HF2

Fixed In:
12.0.0, 11.6.0 HF5

Opened: Aug 06, 2014

Severity: 1-Blocking

Symptoms

IKEv1 daemon (racoon) may occasionally crash because of freeing null pointer when the IKEv1 negotiation data is flushed.

Impact

IKEv1 daemon (racoon) crashes and restarts, losing unrelated but useful state information. IKEv1 daemon (racoon) can re-establish security associations on demand by user traffic.

Conditions

The IKEv1 security associations are flushed by user issued commands.

Workaround

None.

Fix Information

A safety check during memory management function can prevent such erroneous memory freeing event. Crash is no longer seen.

Behavior Change

Guides & references

K10134038: F5 Bug Tracker Filter Names and Tips