KAME Racoon Malformed ISAKMP Packet Headers Denial of Service Vulnerability
BID:12804
Info
KAME Racoon Malformed ISAKMP Packet Headers Denial of Service Vulnerability
| Bugtraq ID: | 12804 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2005-0398 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 14 2005 12:00AM |
| Updated: | Jul 12 2009 10:56AM |
| Credit: | Discovery is credited to Sebastian Krahmer. |
| Vulnerable: |
SuSE Linux Enterprise Server 9 SGI ProPack 3.0 SCO Unixware 7.1.4 SCO Open Server 6.0 S.u.S.E. Novell Linux Desktop 9.0 S.u.S.E. Linux Personal 9.2 x86_64 S.u.S.E. Linux Personal 9.2 S.u.S.E. Linux Personal 9.1 x86_64 S.u.S.E. Linux Personal 9.1 Redhat Enterprise Linux WS 4 Redhat Enterprise Linux WS 3 Redhat Enterprise Linux ES 4 Redhat Enterprise Linux ES 3 Redhat Enterprise Linux AS 4 Redhat Enterprise Linux AS 3 Redhat Desktop 4.0 Redhat Desktop 3.0 KAME Racoon 20050307 KAME Racoon 20050228 KAME Racoon 20050221 KAME Racoon 20050214 KAME Racoon 20050207 KAME Racoon 20050131 KAME Racoon 20050124 KAME Racoon 20050117 KAME Racoon 20050110 KAME Racoon 20050103 KAME Racoon 20040503 KAME Racoon 20040407b KAME Racoon 20040405 KAME Racoon 20030711 KAME Racoon IPsec-Tools IPsec-Tools 0.5 IPsec-Tools IPsec-Tools 0.3.3 Gentoo Linux ALT Linux ALT Linux Junior 2.3 ALT Linux ALT Linux Compact 2.3 |
| Not Vulnerable: |
KAME Racoon 20050314 IPsec-Tools IPsec-Tools 0.5.1 |
Discussion
KAME Racoon Malformed ISAKMP Packet Headers Denial of Service Vulnerability
KAME's racoon is reported prone to a vulnerability that may allow a remote attacker to cause a denial-of-service condition in the application.
This issue arises from a boundary condition error when the application handles malformed ISAKMP packets.
Versions of racoon prior to 20050307 are considered vulnerable to this issue.
KAME's racoon is reported prone to a vulnerability that may allow a remote attacker to cause a denial-of-service condition in the application.
This issue arises from a boundary condition error when the application handles malformed ISAKMP packets.
Versions of racoon prior to 20050307 are considered vulnerable to this issue.
Exploit / POC
KAME Racoon Malformed ISAKMP Packet Headers Denial of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected]
Solution / Fix
KAME Racoon Malformed ISAKMP Packet Headers Denial of Service Vulnerability
Solution:
The vendor has released a SNAP upgrade to address this issue.
Please see the referenced advisories for further information.
KAME Racoon 20050214
KAME Racoon 20050110
KAME Racoon 20040405
KAME Racoon 20050103
KAME Racoon 20050207
KAME Racoon 20040503
KAME Racoon 20050307
KAME Racoon 20050117
KAME Racoon 20050124
KAME Racoon 20050228
KAME Racoon 20050221
KAME Racoon 20030711
KAME Racoon 20050131
KAME Racoon 20040407b
KAME Racoon
IPsec-Tools IPsec-Tools 0.3.3
IPsec-Tools IPsec-Tools 0.5
SCO Open Server 6.0
SCO Unixware 7.1.4
S.u.S.E. Linux Personal 9.1 x86_64
S.u.S.E. Linux Personal 9.1
S.u.S.E. Linux Personal 9.2
S.u.S.E. Linux Personal 9.2 x86_64
Solution:
The vendor has released a SNAP upgrade to address this issue.
Please see the referenced advisories for further information.
KAME Racoon 20050214
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050110
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20040405
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050103
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050207
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20040503
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050307
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050117
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050124
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050228
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050221
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20030711
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20050131
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon 20040407b
-
KAME racoon 20050314
http://www.kame.net/snap-users/
KAME Racoon
-
KAME racoon 20050314
http://www.kame.net/snap-users/
IPsec-Tools IPsec-Tools 0.3.3
-
Ubuntu ipsec-tools_0.3.3-1ubuntu0.1_amd64.deb
Ubuntu 4.10 (Warty Warthog)
http://security.ubuntu.com/ubuntu/pool/main/i/ipsec-tools/ipsec-tools_ 0.3.3-1ubuntu0.1_amd64.deb -
Ubuntu ipsec-tools_0.3.3-1ubuntu0.1_i386.deb
Ubuntu 4.10 (Warty Warthog)
http://security.ubuntu.com/ubuntu/pool/main/i/ipsec-tools/ipsec-tools_ 0.3.3-1ubuntu0.1_i386.deb -
Ubuntu ipsec-tools_0.3.3-1ubuntu0.1_powerpc.deb
Ubuntu 4.10 (Warty Warthog)
http://security.ubuntu.com/ubuntu/pool/main/i/ipsec-tools/ipsec-tools_ 0.3.3-1ubuntu0.1_powerpc.deb -
Ubuntu racoon_0.3.3-1ubuntu0.1_amd64.deb
Ubuntu 4.10 (Warty Warthog)
http://security.ubuntu.com/ubuntu/pool/universe/i/ipsec-tools/racoon_0 .3.3-1ubuntu0.1_amd64.deb -
Ubuntu racoon_0.3.3-1ubuntu0.1_i386.deb
Ubuntu 4.10 (Warty Warthog)
http://security.ubuntu.com/ubuntu/pool/universe/i/ipsec-tools/racoon_0 .3.3-1ubuntu0.1_i386.deb -
Ubuntu racoon_0.3.3-1ubuntu0.1_powerpc.deb
Ubuntu 4.10 (Warty Warthog)
http://security.ubuntu.com/ubuntu/pool/universe/i/ipsec-tools/racoon_0 .3.3-1ubuntu0.1_powerpc.deb
IPsec-Tools IPsec-Tools 0.5
-
Fedora ipsec-tools-0.5-2.fc2.i386.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora ipsec-tools-0.5-2.fc2.x86_64.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora ipsec-tools-0.5-2.fc3.i386.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Fedora ipsec-tools-0.5-2.fc3.x86_64.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Fedora ipsec-tools-debuginfo-0.5-2.fc2.i386.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora ipsec-tools-debuginfo-0.5-2.fc2.x86_64.rpm
RedHat Fedora Core 2
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/2/ -
Fedora ipsec-tools-debuginfo-0.5-2.fc3.i386.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/ -
Fedora ipsec-tools-debuginfo-0.5-2.fc3.x86_64.rpm
RedHat Fedora Core 3
http://download.fedora.redhat.com/pub/fedora/linux/core/updates/3/
SCO Open Server 6.0
-
SCO SCOSA-2005.52
OpenServer 6.0.0
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.52 -
SCO SCOSA-2005.52
OpenServer 6.0.0
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.52
SCO Unixware 7.1.4
-
SCO erg712818.uw714.pkg.Z
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.37
S.u.S.E. Linux Personal 9.1 x86_64
-
SuSE ipsec-tools-0.3.3-1.6.x86_64.rpm
ftp://ftp.suse.com/pub/suse/x86_64/update/9.1/rpm/x86_64/ipsec-tools-0 .3.3-1.6.x86_64.rpm
S.u.S.E. Linux Personal 9.1
-
SuSE ipsec-tools-0.3.3-1.6.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/9.1/rpm/i586/ipsec-tools-0.3.3 -1.6.i586.rpm
S.u.S.E. Linux Personal 9.2
-
SuSE ipsec-tools-0.4rc1-3.2.i586.rpm
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/i586/ipsec-tools-0.4rc 1-3.2.i586.rpm
S.u.S.E. Linux Personal 9.2 x86_64
-
SuSE ipsec-tools-0.4rc1-3.2.x86_64.rpm
ftp://ftp.suse.com/pub/suse/i386/update/9.2/rpm/x86_64/ipsec-tools-0.4 rc1-3.2.x86_64.rpm
References
KAME Racoon Malformed ISAKMP Packet Headers Denial of Service Vulnerability
References:
References:
- [security-announce] I: updated packages available (ALT Linux)
- CAN-2005-0398 racoon DoS (Josh Bressers)
- RHSA-2005:232-10 - ipsec-tools security update (RedHat)
- There is a general problem with racoon parsing ISAKMP (Sebastian Krahmer)
- Vendor Homepage (KAME Project)