CVE-2004-0392

racoon before 20040407b allows remote attackers to cause a denial of service (infinite loop and dropped connections) via an IKE message with a malformed Generic Payload Header containing invalid (1) "Security Association Next Payload" and (2) "RESERVED" fields.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kame:racoon:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:48

Type Values Removed Values Added
References () ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.10/SCOSA-2005.10.txt - () ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.10/SCOSA-2005.10.txt -
References () http://orange.kame.net/dev/query-pr.cgi?pr=555 - () http://orange.kame.net/dev/query-pr.cgi?pr=555 -
References () http://www.vuxml.org/freebsd/40fcf20f-8891-11d8-90d1-0020ed76ef5a.html - Vendor Advisory () http://www.vuxml.org/freebsd/40fcf20f-8891-11d8-90d1-0020ed76ef5a.html - Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/15893 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/15893 -

Information

Published : 2004-06-14 04:00

Updated : 2024-11-20 23:48


NVD link : CVE-2004-0392

Mitre link : CVE-2004-0392

CVE.ORG link : CVE-2004-0392


JSON object : View

Products Affected

kame

  • racoon