Buffer overflows in Cisco Virtual Private Network (VPN) Client 3.5.4 and earlier allows remote attackers to cause a denial of service via (1) an Internet Key Exchange (IKE) with a large Security Parameter Index (SPI) payload, or (2) an IKE packet with a large number of valid payloads.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Vpn_client | Cisco | 3.5.1 (including) | 3.5.1 (including) |
| Vpn_client | Cisco | 3.5.2 (including) | 3.5.2 (including) |