Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.56018
Kategorie:Gentoo Local Security Checks
Titel:Gentoo Security Advisory GLSA 200512-04 (openswan ipsec-tools)
Zusammenfassung:The remote host is missing updates announced in;advisory GLSA 200512-04.
Beschreibung:Summary:
The remote host is missing updates announced in
advisory GLSA 200512-04.

Vulnerability Insight:
Openswan and IPsec-Tools suffer from an implementation flaw which may allow
a Denial of Service attack.

Solution:
All Openswan users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose '>=net-misc/openswan-2.4.4'

All IPsec-Tools users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose net-firewall/ipsec-tools

CVSS Score:
7.8

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2005-3671
BugTraq ID: 15416
http://www.securityfocus.com/bid/15416
Bugtraq: 20051213 Re: [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAK MP Protocol implementation (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2005-12/0138.html
Bugtraq: 20051214 Re: [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAK MP Protocol implementation (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2005-12/0161.html
CERT/CC vulnerability note: VU#226364
http://www.kb.cert.org/vuls/id/226364
http://www.redhat.com/archives/fedora-announce-list/2005-November/msg00057.html
http://www.redhat.com/archives/fedora-announce-list/2005-November/msg00058.html
http://www.gentoo.org/security/en/glsa/glsa-200512-04.xml
http://jvn.jp/niscc/NISCC-273756/index.html
http://www.ee.oulu.fi/research/ouspg/protos/testing/c09/isakmp/
http://www.niscc.gov.uk/niscc/docs/re-20051114-01014.pdf?lang=en
http://securitytracker.com/id?1015214
http://secunia.com/advisories/17581
http://secunia.com/advisories/17680
http://secunia.com/advisories/17980
http://secunia.com/advisories/18115
SuSE Security Announcement: SUSE-SA:2005:070 (Google Search)
http://www.novell.com/linux/security/advisories/2005_70_ipsec.html
Common Vulnerability Exposure (CVE) ID: CVE-2005-3732
1015254
http://securitytracker.com/id?1015254
15523
http://www.securityfocus.com/bid/15523
17668
http://secunia.com/advisories/17668
17822
http://secunia.com/advisories/17822
17980
18115
18616
http://secunia.com/advisories/18616
18742
http://secunia.com/advisories/18742
19833
http://secunia.com/advisories/19833
20051214 Re: [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAK MP Protocol implementation
20060501-01-U
ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.asc
20210
http://secunia.com/advisories/20210
ADV-2005-2521
http://www.vupen.com/english/advisories/2005/2521
DSA-965
http://www.debian.org/security/2006/dsa-965
FLSA-2006:190941
http://www.securityfocus.com/archive/1/436343/100/0/threaded
GLSA-200512-04
MDKSA-2006:020
http://www.mandriva.com/security/advisories?name=MDKSA-2006:020
RHSA-2006:0267
http://rhn.redhat.com/errata/RHSA-2006-0267.html
SUSE-SA:2005:070
USN-221-1
https://usn.ubuntu.com/221-1/
[ipsec-tools-devel] 20051120 Potential DoS fixed in ipsec-tools
http://sourceforge.net/mailarchive/forum.php?thread_id=9017454&forum_id=32000
http://cvs.sourceforge.net/viewcvs.py/ipsec-tools/ipsec-tools/src/racoon/isakmp_agg.c?r1=1.20.2.3&r2=1.20.2.4&diff_format=u
oval:org.mitre.oval:def:9857
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9857
CopyrightCopyright (C) 2008 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.