7.5
CVE-2005-3768
- EPSS 3.78%
- Veröffentlicht 23.11.2005 00:03:00
- Zuletzt bearbeitet 16.06.2026 22:17:35
- Erkennungen
Buffer overflow in the Internet Key Exchange version 1 (IKEv1) implementation in Symantec Dynamic VPN Services, as used in Enterprise Firewall, Gateway Security, and Firewall /VPN Appliance products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Symantec ≫ Enterprise Firewall Version 8.0 Edition solaris
Symantec ≫ Enterprise Firewall Version 8.0 Edition windows
Symantec ≫ Gateway Security 300 Version 2.0
Symantec ≫ Gateway Security 400 Version 2.0
Symantec ≫ Gateway Security 5000 Series Version 3.0
Symantec ≫ Gateway Security 5300 Version 1.0
Symantec ≫ Gateway Security 5310 Version 1.0
Symantec ≫ Gateway Security 5400 Version 2.0.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.78% | 0.886 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/17684
http://securityresponse.symantec.com/avcenter/security/Content/2005.11.21.html
http://securitytracker.com/id?1015247
http://securitytracker.com/id?1015248
http://securitytracker.com/id?1015249
http://www.vupen.com/english/advisories/2005/2517