Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2004-0155
HistoryJun 01, 2004 - 4:00 a.m.

CVE-2004-0155

2004-06-0104:00:00
Debian Security Bug Tracker
security-tracker.debian.org
11

0.013 Low

EPSS

Percentile

86.0%

The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not verify the RSA signature authentication, which allows remote attackers to establish unauthorized IP connections or conduct man-in-the-middle attacks using a valid, trusted X.509 certificate.

OSVersionArchitecturePackageVersionFilename
Debian9allipsec-tools< 1:0.8.2+20140711-8+deb9u1ipsec-tools_1:0.8.2+20140711-8+deb9u1_all.deb

0.013 Low

EPSS

Percentile

86.0%