7.8

CVE-2005-3732

The Internet Key Exchange version 1 (IKEv1) implementation (isakmp_agg.c) in racoon in ipsec-tools before 0.6.3, when running in aggressive mode, allows remote attackers to cause a denial of service (null dereference and crash) via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ipsec-toolsIpsec-tools Version0.5
Ipsec-toolsIpsec-tools Version0.5.1
Ipsec-toolsIpsec-tools Version0.5.2
Ipsec-toolsIpsec-tools Version0.6
Ipsec-toolsIpsec-tools Version0.6.1
Ipsec-toolsIpsec-tools Version0.6.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 18.86% 0.947
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C