Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-3671
Description:The Internet Key Exchange version 1 (IKEv1) implementation in Openswan 2 (openswan-2) before 2.4.4, and freeswan in SUSE LINUX 9.1 before 2.04_1.5.4-1.23, allow remote attackers to cause a denial of service via (1) a crafted packet using 3DES with an invalid key length, or (2) unspecified inputs when Aggressive Mode is enabled and the PSK is known, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
Test IDs: 1.3.6.1.4.1.25623.1.0.65221  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-3671
BugTraq ID: 15416
http://www.securityfocus.com/bid/15416
Bugtraq: 20051213 Re: [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAK MP Protocol implementation (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2005-12/0138.html
Bugtraq: 20051214 Re: [ GLSA 200512-04 ] Openswan, IPsec-Tools: Vulnerabilities in ISAK MP Protocol implementation (Google Search)
http://archives.neohapsis.com/archives/bugtraq/2005-12/0161.html
CERT/CC vulnerability note: VU#226364
http://www.kb.cert.org/vuls/id/226364
http://www.redhat.com/archives/fedora-announce-list/2005-November/msg00057.html
http://www.redhat.com/archives/fedora-announce-list/2005-November/msg00058.html
http://www.gentoo.org/security/en/glsa/glsa-200512-04.xml
http://jvn.jp/niscc/NISCC-273756/index.html
http://www.ee.oulu.fi/research/ouspg/protos/testing/c09/isakmp/
http://www.niscc.gov.uk/niscc/docs/re-20051114-01014.pdf?lang=en
http://securitytracker.com/id?1015214
http://secunia.com/advisories/17581
http://secunia.com/advisories/17680
http://secunia.com/advisories/17980
http://secunia.com/advisories/18115
SuSE Security Announcement: SUSE-SA:2005:070 (Google Search)
http://www.novell.com/linux/security/advisories/2005_70_ipsec.html




© 1998-2025 E-Soft Inc. All rights reserved.