Skip to main content

Vendor archive

kame CVEs

Beta · best-effort

8 CVEs tagged to vendor kame1 Critical, 3 High, 4 Medium, 0 Low, 0 Unrated.

CVE-2008-2464

Published Sep 11, 2008

The mld_input function in sys/netinet6/mld6.c in the kernel in NetBSD 4.0, FreeBSD, and KAME, when INET6 is enabled, allows remote attackers to cause a denial of service (divide-b…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort

CVE-2008-0177

Published Feb 7, 2008

The ipcomp6_input function in sys/netinet6/ipcomp_input.c in the KAME project before 20071201 does not properly check the return value of the m_pulldown function, which allows rem…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0392

Published Jun 14, 2004

racoon before 20040407b allows remote attackers to cause a denial of service (infinite loop and dropped connections) via an IKE message with a malformed Generic Payload Header con…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0155

Published Jun 1, 2004

The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not verify the RSA signature authentication, which allows remote at…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2004-0403

Published Jun 1, 2004

Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet with a large length field.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0164

Published Mar 3, 2004

KAME IKE daemon (racoon) does not properly handle hash values, which allows remote attackers to delete certificates via (1) a certain delete message that is not properly handled i…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-8 of 8 CVEsPage 1 of 1