Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-1632

Опубликовано: 14 мая 2009
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5

Описание

Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.

РелизСтатусПримечание
dapper

released

1:0.6.5-4ubuntu1.3
devel

released

1:0.7.1-1.5ubuntu1
hardy

released

1:0.6.7-1.1ubuntu1.2
intrepid

released

1:0.7-2.1ubuntu1.8.10.1
jaunty

released

1:0.7-2.1ubuntu1.9.04.1
upstream

released

1:0.7.1-1.5, 0.7.2

Показывать по

EPSS

Процентиль: 88%
0.04307
Низкий

5 Medium

CVSS2

Связанные уязвимости

redhat
около 16 лет назад

Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.

nvd
около 16 лет назад

Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.

debian
около 16 лет назад

Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attacke ...

github
около 3 лет назад

Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.

oracle-oval
около 16 лет назад

ELSA-2009-1036: ipsec-tools security update (IMPORTANT)

EPSS

Процентиль: 88%
0.04307
Низкий

5 Medium

CVSS2

Уязвимость CVE-2009-1632