IKE: OpenBSD ISAKMPD Memory Leak Denial of Service

This signature detects attempts to exploit a known vulnerability against OpenBSD IKE key management. A successful attack can result in a denial-of-service condition.

Extended Description

OpenBSD is prone to a vulnerability that would allow an attacker to cause the isakmpd daemon to crash, denying service to legitimate users. This issue is due to a failure of the process to manage memory properly. This issue was previously reported in OpenBSD isakmpd Multiple Unspecified Remote Denial Of Service Vulnerabilities (BID 9907). That BID will be retired.

Affected Products

Openbsd openbsd

References

BugTraq: 10032

CVE: CVE-2004-0222

Short Name
IKE:DOS:OPENBSD-ISAKMPD
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
IKE
Keywords
CVE-2004-0222 Denial ISAKMPD Leak Memory OpenBSD Service bid:10032 of
Release Date
05/10/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Openbsd

CVSS Score

5.0

Found a potential security threat?