First published: Fri May 27 2005(Updated: )
Nortel VPN Router (aka Contivity) allows remote attackers to cause a denial of service (crash) via an IPsec IKE packet with a malformed ISAKMP header.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nortel Contivity | =1500_vpn_switch | |
Nortel Vpn Router 1700 | ||
Nortel Vpn Router 5000 | ||
Nortel Contivity | =2000_vpn_switch | |
Nortel Contivity | =1000_vpn_switch | |
Nortel Vpn Router 1100 | ||
Nortel Vpn Router 1010 | ||
Nortel Contivity | =4000_vpn_switch | |
Nortel Vpn Router 600 | ||
Nortel Vpn Router 1050 | ||
Nortel Contivity | =1600_secure_ip_services_gateway | |
Nortel Contivity | =2500_vpn_switch | |
Nortel Contivity | =2600_secure_ip_services_gateway | |
Nortel Contivity | =4600_secure_ip_services_gateway | |
Nortel Vpn Router 2700 | ||
Nortel Vpn Router 1740 | ||
Nortel Contivity | =4500_secure_ip_services_gateway |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1802 has a high severity rating due to its potential to cause a denial of service.
To fix CVE-2005-1802, apply the latest security patches from Nortel for affected VPN router models.
CVE-2005-1802 affects various models of Nortel VPN routers and Contivity switches.
Yes, CVE-2005-1802 can be exploited remotely by sending a malformed ISAKMP header in an IPsec IKE packet.
CVE-2005-1802 involves a denial of service attack that can crash the affected Nortel devices.