CVE-2004-0369
Last modified
CVE-2004-0369 is a vulnerability of currently unknown severity. Buffer overflow in Entrust LibKmp ISAKMP library, as used by Symantec Enterprise Firewall 7.0 through 8.0, Gateway Security 5300 1.0, Gateway Security 5400 2.0, and VelociRaptor 1.5, allows remote attackers to execute arbitrary code via a crafted ISAKMP payload.. EPSS estimates a 4.37% chance of exploitation in the next 30 days.
Description
Buffer overflow in Entrust LibKmp ISAKMP library, as used by Symantec Enterprise Firewall 7.0 through 8.0, Gateway Security 5300 1.0, Gateway Security 5400 2.0, and VelociRaptor 1.5, allows remote attackers to execute arbitrary code via a crafted ISAKMP payload.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Entrust | Entrust Libkmp Isakmp Library | All versions |
| Symantec | Enterprise Firewall | 7.0 |
| Symantec | Enterprise Firewall | 7.0.4 |
| Symantec | Enterprise Firewall | 8.0 |
| Symantec | Velociraptor | 1.5 |
| Symantec | Gateway Security 5300 | 1.0 |
| Symantec | Gateway Security 5400 | 2.0 |
References
- http://www.auscert.org.au/render.html?it=4339Vendor Advisory
- http://www.ciac.org/ciac/bulletins/o-206.shtmlVendor Advisory
- http://xforce.iss.net/xforce/alerts/id/181Patch, Vendor Advisory
- http://www.auscert.org.au/render.html?it=4339Vendor Advisory
- http://www.ciac.org/ciac/bulletins/o-206.shtmlVendor Advisory
- http://xforce.iss.net/xforce/alerts/id/181Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-0369?
How severe is CVE-2004-0369?
How do I fix CVE-2004-0369?
Are you affected by CVE-2004-0369?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
