CVE-2009-1632

MEDIUM

Description

Multiple memory leaks in Ipsec-tools before 0.7.2 allow remote attackers to cause a denial of service (memory consumption) via vectors involving (1) signature verification during user authentication with X.509 certificates, related to the eay_check_x509sign function in src/racoon/crypto_openssl.c; and (2) the NAT-Traversal (aka NAT-T) keepalive implementation, related to src/racoon/nattraversal.c.

References

http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/crypto_openssl.c

http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/crypto_openssl.c.diff?r1=1.11.6.4&r2=1.11.6.5&f=h

http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/nattraversal.c

http://cvsweb.netbsd.org/bsdweb.cgi/src/crypto/dist/ipsec-tools/src/racoon/nattraversal.c.diff?r1=1.6&r2=1.6.6.1&f=h

http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10705

http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html

http://lists.opensuse.org/opensuse-security-announce/2009-07/msg00002.html

http://marc.info/?l=oss-security&m=124101704828036&w=2

http://secunia.com/advisories/35153

http://secunia.com/advisories/35159

http://secunia.com/advisories/35212

http://secunia.com/advisories/35404

http://secunia.com/advisories/35685

http://security.gentoo.org/glsa/glsa-200905-03.xml

http://sourceforge.net/mailarchive/forum.php?thread_name=20090422151825.GB46988%40zeninc.net&forum_name=ipsec-tools-announce

http://sourceforge.net/project/shownotes.php?group_id=74601&release_id=677611

http://support.apple.com/kb/HT3937

http://www.debian.org/security/2009/dsa-1804

http://www.mandriva.com/security/advisories?name=MDVSA-2009:114

http://www.openwall.com/lists/oss-security/2009/05/12/3

http://www.redhat.com/support/errata/RHSA-2009-1036.html

http://www.securityfocus.com/bid/34765

http://www.ubuntu.com/usn/USN-785-1

http://www.vupen.com/english/advisories/2009/3184

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10581

https://trac.ipsec-tools.net/ticket/303

Details

Source: MITRE

Published: 2009-05-14

Updated: 2017-09-29

Type: CWE-399

Risk Information

CVSS v2.0

Base Score: 5

Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Impact Score: 2.9

Exploitability Score: 10

Severity: MEDIUM

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:ipsec-tools:ipsec-tools:0.1:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.2:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.2.1:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.2.2:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.2.3:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.2.4:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3:rc1:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3:rc2:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3:rc3:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3:rc4:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3:rc5:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3.1:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3.2:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3.3:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3_rc1:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3_rc2:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3_rc3:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3_rc4:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.3_rc5:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.4:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.4:rc1:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.5:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.5.1:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.5.2:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.6:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.6.1:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.6.2:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.6.3:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.6.4:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.6.5:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.6.6:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.6.7:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:0.7:*:*:*:*:*:*:*

cpe:2.3:a:ipsec-tools:ipsec-tools:*:*:*:*:*:*:*:* versions up to 0.7.1 (inclusive)

Tenable Plugins

View all (23 total)

IDNameProductFamilySeverity
79457OracleVM 2.1 : ipsec-tools (OVMSA-2009-0010)NessusOracleVM Local Security Checks
high
67859Oracle Linux 5 : ipsec-tools (ELSA-2009-1036)NessusOracle Linux Local Security Checks
medium
60585Scientific Linux Security Update : ipsec-tools on SL5.x i386/x86_64NessusScientific Linux Local Security Checks
medium
51759SuSE 10 Security Update : Novell ipsec tools (ZYPP Patch Number 6306)NessusSuSE Local Security Checks
medium
43749CentOS 5 : ipsec-tools (CESA-2009:1036)NessusCentOS Local Security Checks
medium
800795Mac OS X 10.6 < 10.6.2 Multiple VulnerabilitiesLog Correlation EngineOperating System Detection
high
5227Mac OS X 10.6 < 10.6.2 Multiple VulnerabilitiesNessus Network MonitorGeneric
critical
42434Mac OS X 10.6.x < 10.6.2 Multiple VulnerabilitiesNessusMacOS X Local Security Checks
critical
42433Mac OS X Multiple Vulnerabilities (Security Update 2009-006)NessusMacOS X Local Security Checks
critical
42025openSUSE 10 Security Update : novell-ipsec-tools (novell-ipsec-tools-6307)NessusSuSE Local Security Checks
medium
41523SuSE 10 Security Update : ipsec-tools (ZYPP Patch Number 6301)NessusSuSE Local Security Checks
medium
41440SuSE 11 Security Update : Novell ipsec tools (SAT Patch Number 1006)NessusSuSE Local Security Checks
medium
41403SuSE 11 Security Update : ipsec-tools (SAT Patch Number 998)NessusSuSE Local Security Checks
medium
41305SuSE9 Security Update : ipsec-tools (YOU Patch Number 12438)NessusSuSE Local Security Checks
medium
40283openSUSE Security Update : novell-ipsec-tools (novell-ipsec-tools-1007)NessusSuSE Local Security Checks
medium
40233openSUSE Security Update : ipsec-tools (ipsec-tools-996)NessusSuSE Local Security Checks
medium
40081openSUSE Security Update : novell-ipsec-tools (novell-ipsec-tools-1007)NessusSuSE Local Security Checks
medium
39993openSUSE Security Update : ipsec-tools (ipsec-tools-996)NessusSuSE Local Security Checks
medium
39514openSUSE 10 Security Update : ipsec-tools (ipsec-tools-6302)NessusSuSE Local Security Checks
medium
39353Ubuntu 6.06 LTS / 8.04 LTS / 8.10 / 9.04 : ipsec-tools vulnerabilities (USN-785-1)NessusUbuntu Local Security Checks
medium
38884GLSA-200905-03 : IPSec Tools: Denial of ServiceNessusGentoo Local Security Checks
medium
38861Debian DSA-1804-1 : ipsec-tools - NULL pointer dereference, memory leaksNessusDebian Local Security Checks
medium
38819RHEL 5 : ipsec-tools (RHSA-2009:1036)NessusRed Hat Local Security Checks
medium