CVE-2005-3732
CVE-2005-3732
The Internet Key Exchange version 1 (IKEv1) implementation (isakmp_agg.c) in racoon in ipsec-tools before 0.6.3, when running in aggressive mode, allows remote attackers to cause a denial of service (null dereference and crash) via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.aschttp://archives.neohapsis.com/archives/bugtraq/2005-12/0161.htmlhttp://cvs.sourceforge.net/viewcvs.py/ipsec-tools/ipsec-tools/src/racoon/isakmp_agg.c?r1=1.20.2.3&r2=1.20.2.4&diff_format=uhttp://rhn.redhat.com/errata/RHSA-2006-0267.htmlhttp://secunia.com/advisories/17668http://secunia.com/advisories/17822http://secunia.com/advisories/17980http://secunia.com/advisories/18115http://secunia.com/advisories/18616http://secunia.com/advisories/18742http://secunia.com/advisories/19833http://secunia.com/advisories/20210