OpenBSD ISAKMPD核心堆缓冲区溢出本地服务拒绝漏洞

漏洞信息详情

OpenBSD ISAKMPD核心堆缓冲区溢出本地服务拒绝漏洞

漏洞简介

OpenBSD 3.4到3.6版本中的isakmpd存在基于堆的缓冲区溢出漏洞。本地用户可以借助插口上的IPSEC证书导致服务拒绝(恐慌)以及损坏内存。

漏洞公告

The vendor has made patches available for OpenBSD 3.4, 3.5, and 3.6. The OpenBSD CVS repository has had the fixes available since 10 December, 2004.
OpenBSD OpenBSD 3.5

OpenBSD OpenBSD 3.4

OpenBSD OpenBSD 3.6

参考网址

来源: XF
名称: openbsd-isakmpd-dos(18486)
链接:http://xforce.iss.net/xforce/xfdb/18486

来源: BID
名称: 11928
链接:http://www.securityfocus.com/bid/11928

来源: OPENBSD
名称: 20041214 007: SECURITY FIX: December 14, 2004
链接:http://www.openbsd.org/errata36.html

来源: SECTRACK
名称: 1012511
链接:http://securitytracker.com/id?1012511

来源: SECUNIA
名称: 13443
链接:http://secunia.com/advisories/13443

来源: OSVDB
名称: 12400
链接:http://www.osvdb.org/12400

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享