Lucene search

K
cveMitreCVE-2006-1646
HistoryApr 06, 2006 - 10:04 a.m.

CVE-2006-1646

2006-04-0610:04:00
mitre
web.nvd.nist.gov
26
cve
internet key exchange
ikev1
isakmp
shoichi sakane
kame project
netbsd
freebsd
bsd
linux
denial of service
daemon crash
ike packets
protos isakmp test suite

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.8

Confidence

High

EPSS

0.018

Percentile

88.5%

The Internet Key Exchange version 1 (IKEv1) implementation (isakmp_agg.c) in the Shoichi Sakane KAME Project racoon, as used by NetBSD 1.6, 2.x before 20060119, certain FreeBSD releases, and possibly other distributions of BSD or Linux operating systems, when running in aggressive mode, allows remote attackers to cause a denial of service (daemon crash) via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.

Affected configurations

Nvd
Node
internet_key_exchangeinternet_key_exchangeMatch1
VendorProductVersionCPE
internet_key_exchangeinternet_key_exchange1cpe:2.3:a:internet_key_exchange:internet_key_exchange:1:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.8

Confidence

High

EPSS

0.018

Percentile

88.5%

Related for CVE-2006-1646