Описание
The Security Gateway does not correctly validate a length value in certain IKE packets when NAT-T is used (4500/UDP). As a result, a specially crafted or malformed packet can cause the VPN processing service to terminate unexpectedly, leading to denial of service (temporary interruption of VPN negotiations/traffic).
EPSS
Процентиль: 81%
0.02139
Низкий
8.1 High
CVSS3
Дефекты
CWE-125
Связанные уязвимости
CVSS3: 8.1
github
3 месяца назад
The Security Gateway does not correctly validate a length value in certain IKE packets when NAT-T is used (4500/UDP). As a result, a specially crafted or malformed packet can cause the VPN processing service to terminate unexpectedly, leading to denial of service (temporary interruption of VPN negotiations/traffic).
EPSS
Процентиль: 81%
0.02139
Низкий
8.1 High
CVSS3
Дефекты
CWE-125