CVE-2002-2222: Medium severity FreeBSD Ports Collection vulnerability
Published Dec 31, 2002
·Updated
isakmpd/message.c in isakmpd in FreeBSD before isakmpd-200204031, and in OpenBSD 3.1, allows remote attackers to cause a denial of service (crash) by sending Internet Key Exchange (IKE) payloads out of sequence.
Affected Software
2 affected components
FreeBSD Ports Collection<=2002-08-28
OpenBSD OpenBSD=3.1
Remediation
Patch Available
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Feb 27, 2007
CVE Published
via MITRE·07:00 AM
Data Sourced
via MITRE·07:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2222?
CVE-2002-2222 is classified as a high severity vulnerability due to its potential to cause a denial of service.
2
How do I fix CVE-2002-2222?
To mitigate CVE-2002-2222, upgrade to the latest version of isakmpd available for your system.
3
Which software is affected by CVE-2002-2222?
CVE-2002-2222 affects FreeBSD before isakmpd-20020403_1 and OpenBSD 3.1.
4
What type of attack is CVE-2002-2222 associated with?
CVE-2002-2222 is associated with remote denial of service attacks through Internet Key Exchange payloads.
5
Can CVE-2002-2222 lead to system crashes?
Yes, CVE-2002-2222 can cause system crashes when exploited by sending IKE payloads out of sequence.