src/racoon/handler.c in racoon in ipsec-tools does not remove an orphaned ph1 (phase 1) handle when it has been initiated remotely, which allows remote attackers to cause a denial of service (resource consumption).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ipsec-tools | Ipsec-tools | * | * |
Red Hat Enterprise Linux 3 | RedHat | ipsec-tools-0:0.2.5-0.7.rhel3.5 | * |
Red Hat Enterprise Linux 4 | RedHat | ipsec-tools-0:0.3.3-7.el4_7 | * |
Red Hat Enterprise Linux 5 | RedHat | ipsec-tools-0:0.6.5-9.el5_2.3 | * |
Ipsec-tools | Ubuntu | dapper | * |
Ipsec-tools | Ubuntu | feisty | * |
Ipsec-tools | Ubuntu | gutsy | * |
Ipsec-tools | Ubuntu | hardy | * |
Ipsec-tools | Ubuntu | upstream | * |