5

CVE-2009-1632

Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.

Data is provided by the National Vulnerability Database (NVD)
Ipsec-toolsIpsec-tools Version <= 0.7.1
Ipsec-toolsIpsec-tools Version0.1
Ipsec-toolsIpsec-tools Version0.2
Ipsec-toolsIpsec-tools Version0.2.1
Ipsec-toolsIpsec-tools Version0.2.2
Ipsec-toolsIpsec-tools Version0.2.3
Ipsec-toolsIpsec-tools Version0.2.4
Ipsec-toolsIpsec-tools Version0.3
Ipsec-toolsIpsec-tools Version0.3 Updaterc1
Ipsec-toolsIpsec-tools Version0.3 Updaterc2
Ipsec-toolsIpsec-tools Version0.3 Updaterc3
Ipsec-toolsIpsec-tools Version0.3 Updaterc4
Ipsec-toolsIpsec-tools Version0.3 Updaterc5
Ipsec-toolsIpsec-tools Version0.3.1
Ipsec-toolsIpsec-tools Version0.3.2
Ipsec-toolsIpsec-tools Version0.3.3
Ipsec-toolsIpsec-tools Version0.3_rc1
Ipsec-toolsIpsec-tools Version0.3_rc2
Ipsec-toolsIpsec-tools Version0.3_rc3
Ipsec-toolsIpsec-tools Version0.3_rc4
Ipsec-toolsIpsec-tools Version0.3_rc5
Ipsec-toolsIpsec-tools Version0.4
Ipsec-toolsIpsec-tools Version0.4 Updaterc1
Ipsec-toolsIpsec-tools Version0.5
Ipsec-toolsIpsec-tools Version0.5.1
Ipsec-toolsIpsec-tools Version0.5.2
Ipsec-toolsIpsec-tools Version0.6
Ipsec-toolsIpsec-tools Version0.6.1
Ipsec-toolsIpsec-tools Version0.6.2
Ipsec-toolsIpsec-tools Version0.6.3
Ipsec-toolsIpsec-tools Version0.6.4
Ipsec-toolsIpsec-tools Version0.6.5
Ipsec-toolsIpsec-tools Version0.6.6
Ipsec-toolsIpsec-tools Version0.6.7
Ipsec-toolsIpsec-tools Version0.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 4.31% 0.878
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P