Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-0790

Опубликовано: 01 апр. 2009
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5

Описание

The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

gutsy

ignored

end of life, was needed
hardy

released

1:2.4.9+dfsg-1ubuntu0.1
intrepid

ignored

end of life, was needed
jaunty

ignored

end of life
karmic

not-affected

1:2.6.22+dfsg-1.1ubuntu1
lucid

not-affected

maverick

not-affected

natty

not-affected

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

gutsy

ignored

end of life, was needed
hardy

ignored

end of life
intrepid

ignored

end of life, was needed
jaunty

ignored

end of life
karmic

not-affected

4.3.2-1ubuntu3
lucid

not-affected

maverick

not-affected

natty

not-affected

Показывать по

Ссылки на источники

EPSS

Процентиль: 93%
0.10861
Средний

5 Medium

CVSS2

Связанные уязвимости

redhat
больше 16 лет назад

The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.

nvd
больше 16 лет назад

The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.

debian
больше 16 лет назад

The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.2 ...

github
больше 3 лет назад

The pluto IKE daemon in Openswan and Strongswan IPsec 2.6 before 2.6.21 and 2.4 before 2.4.14, and Strongswan 4.2 before 4.2.14 and 2.8 before 2.8.9, allows remote attackers to cause a denial of service (daemon crash and restart) via a crafted (1) R_U_THERE or (2) R_U_THERE_ACK Dead Peer Detection (DPD) IPsec IKE Notification message that triggers a NULL pointer dereference related to inconsistent ISAKMP state and the lack of a phase2 state association in DPD.

oracle-oval
больше 16 лет назад

ELSA-2009-0402: openswan security update (IMPORTANT)

EPSS

Процентиль: 93%
0.10861
Средний

5 Medium

CVSS2