5
CVE-2009-1632
- EPSS 4.31%
- Published 14.05.2009 17:30:00
- Last modified 09.04.2025 00:30:58
- Source cve@mitre.org
- Teams watchlist Login
- Open Login
Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.
Data is provided by the National Vulnerability Database (NVD)
Ipsec-tools ≫ Ipsec-tools Version <= 0.7.1
Ipsec-tools ≫ Ipsec-tools Version0.1
Ipsec-tools ≫ Ipsec-tools Version0.2
Ipsec-tools ≫ Ipsec-tools Version0.2.1
Ipsec-tools ≫ Ipsec-tools Version0.2.2
Ipsec-tools ≫ Ipsec-tools Version0.2.3
Ipsec-tools ≫ Ipsec-tools Version0.2.4
Ipsec-tools ≫ Ipsec-tools Version0.3
Ipsec-tools ≫ Ipsec-tools Version0.3 Updaterc1
Ipsec-tools ≫ Ipsec-tools Version0.3 Updaterc2
Ipsec-tools ≫ Ipsec-tools Version0.3 Updaterc3
Ipsec-tools ≫ Ipsec-tools Version0.3 Updaterc4
Ipsec-tools ≫ Ipsec-tools Version0.3 Updaterc5
Ipsec-tools ≫ Ipsec-tools Version0.3.1
Ipsec-tools ≫ Ipsec-tools Version0.3.2
Ipsec-tools ≫ Ipsec-tools Version0.3.3
Ipsec-tools ≫ Ipsec-tools Version0.3_rc1
Ipsec-tools ≫ Ipsec-tools Version0.3_rc2
Ipsec-tools ≫ Ipsec-tools Version0.3_rc3
Ipsec-tools ≫ Ipsec-tools Version0.3_rc4
Ipsec-tools ≫ Ipsec-tools Version0.3_rc5
Ipsec-tools ≫ Ipsec-tools Version0.4
Ipsec-tools ≫ Ipsec-tools Version0.4 Updaterc1
Ipsec-tools ≫ Ipsec-tools Version0.5
Ipsec-tools ≫ Ipsec-tools Version0.5.1
Ipsec-tools ≫ Ipsec-tools Version0.5.2
Ipsec-tools ≫ Ipsec-tools Version0.6
Ipsec-tools ≫ Ipsec-tools Version0.6.1
Ipsec-tools ≫ Ipsec-tools Version0.6.2
Ipsec-tools ≫ Ipsec-tools Version0.6.3
Ipsec-tools ≫ Ipsec-tools Version0.6.4
Ipsec-tools ≫ Ipsec-tools Version0.6.5
Ipsec-tools ≫ Ipsec-tools Version0.6.6
Ipsec-tools ≫ Ipsec-tools Version0.6.7
Ipsec-tools ≫ Ipsec-tools Version0.7
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 4.31% | 0.878 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|