IPSEC Server ISAKMP Implementation Malformed IKE Request Remote DoS

medium Nessus Plugin ID 10941

Synopsis

The remote IPSEC server is affected by a remote denial of service vulnerability.

Description

The remote IPSEC server seems to have a problem negotiating malformed IKE requests. An attacker may use this flaw to disable your VPN remotely.

Note that this plugin does not run over IPv6.

Solution

Contact your vendor for a patch.

See Also

https://tools.ietf.org/html/rfc2409

Plugin Details

Severity: Medium

ID: 10941

File Name: ike_check.nasl

Version: 1.27

Type: remote

Published: 4/20/2002

Updated: 3/6/2019

Configuration: Enable paranoid mode

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

Required KB Items: Settings/ParanoidReport