Family: Debian Local Security Checks --> Category: infos
[DSA965] DSA-965-1 ipsec-tools Vulnerability Scan
Vulnerability Scan Summary
Detailed Explanation for this Vulnerability Test
The Internet Key Exchange version 1 (IKEv1) implementation in racoon
from ipsec-tools, IPsec tools for Linux, try to dereference a NULL
pointer under certain conditions which allows a remote attacker to
cause a denial of service.
The old stable distribution (woody) does not contain ipsec-tools.
For the stable distribution (sarge) this problem has been fixed in
For the unstable distribution (sid) this problem has been fixed in
We recommend that you upgrade your racoon package.
Solution : http://www.debian.org/security/2006/dsa-965
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.