KAME Racoon "Authentication" SA Deletion Vulnerability
BID:9416
Info
KAME Racoon "Authentication" SA Deletion Vulnerability
| Bugtraq ID: | 9416 |
| Class: | Access Validation Error |
| CVE: |
CVE-2004-0164 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 13 2004 12:00AM |
| Updated: | Feb 16 2007 11:07PM |
| Credit: | Discovered by Thomas Walpuski <[email protected]>. |
| Vulnerable: |
SCO Unixware 7.1.4 KAME Racoon |
| Not Vulnerable: | |
Discussion
KAME Racoon "Authentication" SA Deletion Vulnerability
Reportedly, attackers may be able to remotely delete security associations (SAs) in hosts running the KAME IKE daemon, Racoon. The issue presents itself when Racoon receives a delete message containing the initiator cookie of a main/aggressive/base mode that has not yet set up an ISAKMP security association.
Reportedly, attackers may be able to remotely delete security associations (SAs) in hosts running the KAME IKE daemon, Racoon. The issue presents itself when Racoon receives a delete message containing the initiator cookie of a main/aggressive/base mode that has not yet set up an ISAKMP security association.
Exploit / POC
KAME Racoon "Authentication" SA Deletion Vulnerability
Though no exploit code is available, a detailed description of an attack that exploits this vulnerability is included in the message by Thomas Walpuski <[email protected]>. See the references for details.
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Though no exploit code is available, a detailed description of an attack that exploits this vulnerability is included in the message by Thomas Walpuski <[email protected]>. See the references for details.
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: mailto:[email protected].
Solution / Fix
KAME Racoon "Authentication" SA Deletion Vulnerability
Solution:
NetBSD has released an advisory that includes updates. Please see the references for details.
KAME Racoon
SCO Unixware 7.1.4
Solution:
NetBSD has released an advisory that includes updates. Please see the references for details.
KAME Racoon
-
KAME isakmp_inf.patch
http://downloads.securityfocus.com/vulnerabilities/patches/isakmp_inf. patch
SCO Unixware 7.1.4
-
SCO erg712650.pkg.Z
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.10/erg712650.pkg.Z -
SCO SCOSA-2005.10
UnixWare 7.1.4
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.10
References
KAME Racoon "Authentication" SA Deletion Vulnerability
References:
References: