CVE Vulnerabilities

CVE-2006-4436

Published: Aug 29, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

isakmpd in OpenBSD 3.8, 3.9, and possibly earlier versions, creates Security Associations (SA) with a replay window of size 0 when isakmpd acts as a responder during SA negotiation, which allows remote attackers to replay IPSec packets and bypass the replay protection.

Affected Software

Name Vendor Start Version End Version
Openbsd Openbsd 3.8 (including) 3.8 (including)
Openbsd Openbsd 3.9 (including) 3.9 (including)
Isakmpd Ubuntu dapper *
Isakmpd Ubuntu devel *
Isakmpd Ubuntu edgy *
Isakmpd Ubuntu feisty *
Isakmpd Ubuntu gutsy *
Isakmpd Ubuntu hardy *
Isakmpd Ubuntu intrepid *
Isakmpd Ubuntu jaunty *
Isakmpd Ubuntu karmic *

References