CVE-2000-0962: Medium severity OpenBSD OpenBSD vulnerability
Published Dec 19, 2000
·Updated
The IPSEC implementation in OpenBSD 2.7 does not properly handle empty AH/ESP packets, which allows remote attackers to cause a denial of service.
Affected Software
1 affected component
OpenBSD OpenBSD=2.7
Remediation
Patch Available
Event History
Dec 19, 2000
CVE Published
05:00 AM
Jan 22, 2001
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-0962?
CVE-2000-0962 is classified as a denial of service vulnerability.
2
How do I fix CVE-2000-0962?
To resolve CVE-2000-0962, upgrade to a later version of OpenBSD that does not contain the vulnerability.
3
What systems are affected by CVE-2000-0962?
CVE-2000-0962 specifically impacts OpenBSD version 2.7.
4
What type of attack can exploit CVE-2000-0962?
CVE-2000-0962 can be exploited by attackers sending specially crafted empty AH/ESP packets.
5
Is there a patch available for CVE-2000-0962?
No specific patch for CVE-2000-0962 is available; upgrading to a secure version of OpenBSD is the recommended action.