Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200404-17
https://security.gentoo.org/
Severity: Normal
Title: ipsec-tools and iputils contain a remote DoS vulnerability
Date: April 24, 2004
Bugs: #48847
ID: 200404-17
Synopsis
=======
racoon, which is included in the ipsec-tools and iputils packages in
Portage, does not check the length of ISAKMP headers. Attackers may be
able to craft an ISAKMP header of sufficient length to consume all
available system resoources, causing a Denial of Service.
Background
=========
From :
"IPsec-Tools is a port of KAME's IPsec utilities to the Linux-2.6 IPsec
implementation."
iputils is a collection of network monitoring tools, including racoon,
ping and ping6.
Affected packages
================
---------------------------------------------------------------...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.