CVE-2006-2298: Medium severity Internet Key Exchange Internet Key Exchange vulnerability
The Internet Key Exchange version 1 (IKEv1) implementation in the libike library in Solaris 9 and 10 allows remote attackers to cause a denial of service (in.iked daemon crash) via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-2298?
CVE-2006-2298 has a medium severity rating due to its potential to cause denial of service.
How do I fix CVE-2006-2298?
Fixing CVE-2006-2298 involves applying the appropriate patches provided by the vendor for the affected versions of Solaris.
What systems are affected by CVE-2006-2298?
CVE-2006-2298 affects the IKEv1 implementation in the libike library for Solaris 9 and 10.
Can CVE-2006-2298 be exploited remotely?
Yes, CVE-2006-2298 can be exploited remotely by sending crafted IKE packets to the affected system.
What is the impact of CVE-2006-2298 on my system?
The impact of CVE-2006-2298 includes potential crashes of the in.iked daemon, leading to a denial of service.