CVE-2006-7155: High severity Novell BorderManager vulnerability
Novell BorderManager 3.8 SP4 generates the same ISAKMP cookies for the same source IP and port number during the same day, which allows remote attackers to conduct denial of service and replay attacks. NOTE: this issue might be related to CVE-2006-5286.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-7155?
CVE-2006-7155 is classified as a medium severity vulnerability due to its potential for denial of service and replay attacks.
How do I fix CVE-2006-7155?
To mitigate CVE-2006-7155, apply patches or updates provided by Novell for BorderManager 3.8 SP4.
What type of attacks can be executed due to CVE-2006-7155?
CVE-2006-7155 can allow attackers to perform denial of service attacks and replay attacks due to predictable ISAKMP cookies.
Is CVE-2006-7155 specific to Novell BorderManager?
Yes, CVE-2006-7155 specifically affects Novell BorderManager version 3.8 SP4.
What does ISAKMP stand for in relation to CVE-2006-7155?
ISAKMP stands for Internet Security Association and Key Management Protocol, which is involved in secure communication for network protocols.