Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3h9p-9pvw-73vm

Опубликовано: 26 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

The Security Gateway does not correctly validate a length value in certain IKE packets when NAT-T is used (4500/UDP). As a result, a specially crafted or malformed packet can cause the VPN processing service to terminate unexpectedly, leading to denial of service (temporary interruption of VPN negotiations/traffic).

The Security Gateway does not correctly validate a length value in certain IKE packets when NAT-T is used (4500/UDP). As a result, a specially crafted or malformed packet can cause the VPN processing service to terminate unexpectedly, leading to denial of service (temporary interruption of VPN negotiations/traffic).

EPSS

Процентиль: 80%
0.02139
Низкий

8.1 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 8.1
nvd
3 месяца назад

The Security Gateway does not correctly validate a length value in certain IKE packets when NAT-T is used (4500/UDP). As a result, a specially crafted or malformed packet can cause the VPN processing service to terminate unexpectedly, leading to denial of service (temporary interruption of VPN negotiations/traffic).

EPSS

Процентиль: 80%
0.02139
Низкий

8.1 High

CVSS3

Дефекты

CWE-125