CVE-2004-0403: Medium severity KAME Racoon vulnerability
Published Apr 16, 2004
·Updated
Racoon before 20040408a allows remote attackers to cause a denial of service (memory consumption) via an ISAKMP packet with a large length field.
Affected Software
1 affected component
KAME Racoon<=2004-04-08a
Remediation
Patch Available
Event History
Apr 16, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0403?
CVE-2004-0403 has a severity rating of critical as it allows remote attackers to cause denial of service through memory consumption.
2
How do I fix CVE-2004-0403?
To fix CVE-2004-0403, upgrade to KAME racoon version 2004-04-08a or later.
3
What software is affected by CVE-2004-0403?
CVE-2004-0403 affects KAME racoon versions prior to 2004-04-08a.
4
What type of attack is described in CVE-2004-0403?
CVE-2004-0403 describes a denial of service attack that exploits ISAKMP packets with large length fields.
5
Can CVE-2004-0403 be exploited remotely?
Yes, CVE-2004-0403 can be exploited by remote attackers.