CVE-2005-3674: High severity Sun Solaris vulnerability

Published Nov 18, 2005
·
Updated

The Internet Key Exchange version 1 (IKEv1) implementation in the libike library in Sun Solaris 9 and 10 allows remote attackers to cause a denial of service (in.iked crash) via certain crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.

Affected Software

2 affected components
Sun Solaris=10.0
Sun Solaris=9.0

Event History

Nov 18, 2005
CVE Published
09:03 PM
Nov 19, 2005
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description

Frequently Asked Questions

1

What is the severity of CVE-2005-3674?

CVE-2005-3674 is classified as a denial of service vulnerability affecting certain IKEv1 implementations.

2

How do I fix CVE-2005-3674?

To mitigate CVE-2005-3674, update your Sun Solaris systems to the latest available patches provided by Oracle.

3

What systems are affected by CVE-2005-3674?

CVE-2005-3674 affects Sun Solaris 9 and 10 running on SPARC architecture.

4

What kind of attack does CVE-2005-3674 facilitate?

CVE-2005-3674 allows remote attackers to cause a denial of service by sending crafted IKE packets.

5

Is there any public testing related to CVE-2005-3674?

Yes, the PROTOS ISAKMP Test Suite has demonstrated the vulnerability by testing IKEv1 implementations.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203