CVE-2008-3651

EUVD-2008-3637
Memory leak in racoon/proposal.c in the racoon daemon in ipsec-tools before 0.7.1 allows remote authenticated users to cause a denial of service (memory consumption) via invalid proposals.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:N/I:N/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 89%
Affected Products (NVD)
VendorProductVersion
linuxipsec_tools_racoon_daemon
0.2.2
linuxipsec_tools_racoon_daemon
0.2.5
linuxipsec_tools_racoon_daemon
0.3.3
linuxipsec_tools_racoon_daemon
0.5
linuxipsec_tools_racoon_daemon
0.5.1
linuxipsec_tools_racoon_daemon
0.5.2
linuxipsec_tools_racoon_daemon
0.6
linuxipsec_tools_racoon_daemon
0.6.4
linuxipsec_tools_racoon_daemon
0.6.5
linuxipsec_tools_racoon_daemon
0.6.6
linuxipsec_tools_racoon_daemon
0.6.7
linuxipsec_tools_racoon_daemon
0.7
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
ipsec-tools
dapper
Fixed 1:0.6.5-4ubuntu1.2
released
feisty
Fixed 1:0.6.6-3ubuntu3.1
released
gutsy
Fixed 1:0.6.6-3.1ubuntu3.1
released
hardy
Fixed 1:0.6.7-1.1ubuntu1.1
released
References