Skip to content
Noroxi

ipsec-tools records

9 published records for vendor ipsec-tools.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

Records by year

  1. 17

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

9 records
  • The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remo

    CriticalCVSS 10.0No exploitEPSS 5%

    kame · racoonDec 6, 2004

  • CVE-2015-4047
    34Monitor

    racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) vi

    HighCVSS 7.8No exploitEPSS 10%

    ipsec-tools · ipsec-toolsMay 29, 2015

  • CVE-2005-3732
    32Monitor

    The Internet Key Exchange version 1 (IKEv1) implementation (isakmp_agg.c) in racoon in ipsec-tools before 0.6.3, when running in aggressive

    HighCVSS 7.8No exploitEPSS 4%

    ipsec-tools · ipsec-toolsNov 21, 2005

  • CVE-2008-3652
    32Monitor

    src/racoon/handler.c in racoon in ipsec-tools does not remove an "orphaned ph1" (phase 1) handle when it has been initiated remotely, which

    HighCVSS 7.8No exploitEPSS 3%

    ipsec-tools · ipsec-toolsAug 12, 2008

  • The racoon daemon in IPsec-Tools 0.8.2 contains a remotely exploitable computational-complexity attack when parsing and storing ISAKMP fragm

    HighCVSS 7.5No exploitEPSS 3%

    ipsec-tools · ipsec-toolsJul 5, 2017

  • CVE-2009-1574
    23Monitor

    racoon/isakmp_frag.c in ipsec-tools before 0.7.2 allows remote attackers to cause a denial of service (crash) via crafted fragmented packets

    MediumCVSS 5.0Proof of conceptEPSS 12%

    ipsec-tools · ipsec-toolsMay 6, 2009

  • CVE-2005-0398
    21Monitor

    The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets.

    MediumCVSS 5.0No exploitEPSS 2%

    ipsec-tools · ipsec-toolsMar 14, 2005

  • CVE-2009-1632
    21Monitor

    Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors invol

    MediumCVSS 5.0No exploitEPSS 2%

    ipsec-tools · ipsec-toolsMay 14, 2009

  • CVE-2007-1841
    18Monitor

    The isakmp_info_recv function in src/racoon/isakmp_inf.c in racoon in Ipsec-tools before 0.6.7 allows remote attackers to cause a denial of

    MediumCVSS 4.3No exploitEPSS 3%

    ipsec-tools · ipsec-toolsApr 10, 2007