CVE-2005-1802: Medium severity Nortel Contivity vulnerability
Published May 27, 2005
·Updated
Nortel VPN Router (aka Contivity) allows remote attackers to cause a denial of service (crash) via an IPsec IKE packet with a malformed ISAKMP header.
Affected Software
17 affected components
Nortel Contivity=1500_vpn_switch
Nortel Vpn Router 1700
Nortel Vpn Router 5000
Nortel Contivity=2000_vpn_switch
Nortel Contivity=1000_vpn_switch
Nortel Vpn Router 1100
Nortel Vpn Router 1010
Nortel Contivity=4000_vpn_switch
Nortel Vpn Router 600
Nortel Vpn Router 1050
Nortel Contivity=1600_secure_ip_services_gateway
Nortel Contivity=2500_vpn_switch
Nortel Contivity=2600_secure_ip_services_gateway
Nortel Contivity=4600_secure_ip_services_gateway
Nortel Vpn Router 2700
Nortel Vpn Router 1740
Nortel Contivity=4500_secure_ip_services_gateway
Remediation
Patch Available
Event History
May 27, 2005
CVE Published
04:00 AM
Jun 1, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1802?
CVE-2005-1802 has a high severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2005-1802?
To fix CVE-2005-1802, apply the latest security patches from Nortel for affected VPN router models.
3
Which Nortel devices are affected by CVE-2005-1802?
CVE-2005-1802 affects various models of Nortel VPN routers and Contivity switches.
4
Can CVE-2005-1802 be exploited remotely?
Yes, CVE-2005-1802 can be exploited remotely by sending a malformed ISAKMP header in an IPsec IKE packet.
5
What type of attack does CVE-2005-1802 involve?
CVE-2005-1802 involves a denial of service attack that can crash the affected Nortel devices.