Buffer overflows in Cisco Virtual Private Network (VPN) Client 3.5.4 and earlier allows remote attackers to cause a denial of service via (1) an Internet Key Exchange (IKE) with a large Security Parameter Index (SPI) payload, or (2) an IKE packet with a large number of valid payloads.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Vpn_client | Cisco | 3.5.1 (including) | 3.5.1 (including) |
Vpn_client | Cisco | 3.5.2 (including) | 3.5.2 (including) |