Security Advisory

CVE-2006-4436

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-08-29 00:00:00
Last updated 2024-08-07 19:06:07
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

isakmpd in OpenBSD 3.8, 3.9, and possibly earlier versions, creates Security Associations (SA) with a replay window of size 0 when isakmpd acts as a responder during SA negotiation, which allows remote attackers to replay IPSec packets and bypass the replay protection.