Записи ipsec-tools
9 опубликованных записей вендора ipsec-tools.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-399 Resource Management Errors3
- CWE-407 Inefficient Algorithmic Complexity1
- CWE-476 NULL Pointer Dereference1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
42В плане | CVE-2004-0607Эксплойта нет | The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remokame · racoon | Критическая10,0 | — | 5,4 % | 6 дек. 2004 г. |
34Наблюдать | CVE-2015-4047Эксплойта нет | racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) viipsec-tools · ipsec-tools · CWE-476 | Высокая7,8 | — | 9,8 % | 29 мая 2015 г. |
32Наблюдать | CVE-2005-3732Эксплойта нет | The Internet Key Exchange version 1 (IKEv1) implementation (isakmp_agg.c) in racoon in ipsec-tools before 0.6.3, when running in aggressive ipsec-tools · ipsec-tools · CWE-399 | Высокая7,8 | — | 4,4 % | 21 нояб. 2005 г. |
32Наблюдать | CVE-2008-3652Эксплойта нет | src/racoon/handler.c in racoon in ipsec-tools does not remove an "orphaned ph1" (phase 1) handle when it has been initiated remotely, which ipsec-tools · ipsec-tools · CWE-399 | Высокая7,8 | — | 3,4 % | 12 авг. 2008 г. |
31Наблюдать | CVE-2016-10396Эксплойта нет | The racoon daemon in IPsec-Tools 0.8.2 contains a remotely exploitable computational-complexity attack when parsing and storing ISAKMP fragmipsec-tools · ipsec-tools · CWE-407 | Высокая7,5 | — | 2,9 % | 5 июл. 2017 г. |
23Наблюдать | CVE-2009-1574Proof of concept | racoon/isakmp_frag.c in ipsec-tools before 0.7.2 allows remote attackers to cause a denial of service (crash) via crafted fragmented packetsipsec-tools · ipsec-tools | Средняя5,0 | — | 11,6 % | 6 мая 2009 г. |
21Наблюдать | CVE-2005-0398Эксплойта нет | The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets.ipsec-tools · ipsec-tools | Средняя5,0 | — | 2,4 % | 14 мар. 2005 г. |
21Наблюдать | CVE-2009-1632Эксплойта нет | Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involipsec-tools · ipsec-tools · CWE-399 | Средняя5,0 | — | 2,0 % | 14 мая 2009 г. |
18Наблюдать | CVE-2007-1841Эксплойта нет | The isakmp_info_recv function in src/racoon/isakmp_inf.c in racoon in Ipsec-tools before 0.6.7 allows remote attackers to cause a denial of ipsec-tools · ipsec-tools | Средняя4,3 | — | 2,9 % | 10 апр. 2007 г. |
- CVE-2004-060742В плане
The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remo
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %kame · racoon6 дек. 2004 г.
- CVE-2015-404734Наблюдать
racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) vi
ВысокаяCVSS 7,8Эксплойта нетEPSS 10 %ipsec-tools · ipsec-tools29 мая 2015 г.
- CVE-2005-373232Наблюдать
The Internet Key Exchange version 1 (IKEv1) implementation (isakmp_agg.c) in racoon in ipsec-tools before 0.6.3, when running in aggressive
ВысокаяCVSS 7,8Эксплойта нетEPSS 4 %ipsec-tools · ipsec-tools21 нояб. 2005 г.
- CVE-2008-365232Наблюдать
src/racoon/handler.c in racoon in ipsec-tools does not remove an "orphaned ph1" (phase 1) handle when it has been initiated remotely, which
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %ipsec-tools · ipsec-tools12 авг. 2008 г.
- CVE-2016-1039631Наблюдать
The racoon daemon in IPsec-Tools 0.8.2 contains a remotely exploitable computational-complexity attack when parsing and storing ISAKMP fragm
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %ipsec-tools · ipsec-tools5 июл. 2017 г.
- CVE-2009-157423Наблюдать
racoon/isakmp_frag.c in ipsec-tools before 0.7.2 allows remote attackers to cause a denial of service (crash) via crafted fragmented packets
СредняяCVSS 5,0Proof of conceptEPSS 12 %ipsec-tools · ipsec-tools6 мая 2009 г.
- CVE-2005-039821Наблюдать
The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets.
СредняяCVSS 5,0Эксплойта нетEPSS 2 %ipsec-tools · ipsec-tools14 мар. 2005 г.
- CVE-2009-163221Наблюдать
Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors invol
СредняяCVSS 5,0Эксплойта нетEPSS 2 %ipsec-tools · ipsec-tools14 мая 2009 г.
- CVE-2007-184118Наблюдать
The isakmp_info_recv function in src/racoon/isakmp_inf.c in racoon in Ipsec-tools before 0.6.7 allows remote attackers to cause a denial of
СредняяCVSS 4,3Эксплойта нетEPSS 3 %ipsec-tools · ipsec-tools10 апр. 2007 г.