KAME-derived implementations of IPsec on NetBSD 1.5.2, FreeBSD 4.5, and other operating systems, does not properly consult the Security Policy Database (SPD), which could cause a Security Gateway (SG) that does not use Encapsulating Security Payload (ESP) to forward forged IPv4 packets.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Freebsd | Freebsd | 4.2 (including) | 4.2 (including) |
Freebsd | Freebsd | 4.3 (including) | 4.3 (including) |
Freebsd | Freebsd | 4.4 (including) | 4.4 (including) |
Freebsd | Freebsd | 4.5 (including) | 4.5 (including) |
Netbsd | Netbsd | 1.5 (including) | 1.5 (including) |
Netbsd | Netbsd | 1.5.1 (including) | 1.5.1 (including) |
Netbsd | Netbsd | 1.5.2 (including) | 1.5.2 (including) |
Openbsd | Openbsd | 2.6 (including) | 2.6 (including) |
Openbsd | Openbsd | 2.7 (including) | 2.7 (including) |