CVE-2005-3666
Last modified
CVE-2005-3666 is a vulnerability of currently unknown severity. Multiple unspecified format string vulnerabilities in multiple unspecified implementations of Internet Key Exchange version 1 (IKEv1) have multiple unspecified attack vectors and impacts, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of information in the original sources, it is likely that this candidate will be REJECTed once it is known which implementations are actually vulnerable.. EPSS estimates a 3.53% chance of exploitation in the next 30 days.
Description
Multiple unspecified format string vulnerabilities in multiple unspecified implementations of Internet Key Exchange version 1 (IKEv1) have multiple unspecified attack vectors and impacts, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of information in the original sources, it is likely that this candidate will be REJECTed once it is known which implementations are actually vulnerable.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Internet Key Exchange | Internet Key Exchange | 1 |
References
- http://www.kb.cert.org/vuls/id/226364Third Party Advisory, US Government Resource
- http://www.kb.cert.org/vuls/id/226364Third Party Advisory, US Government Resource
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-3666?
How severe is CVE-2005-3666?
How do I fix CVE-2005-3666?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-3660Linux kernel 2.4 and 2.6 allows attackers to cause a denial …
- CVE-2005-3661Dell TrueMobile 2300 Wireless Broadband Router running firmw…
- CVE-2005-3662Off-by-one buffer overflow in pnmtopng before 2.39, when usi…
- CVE-2005-3663Unquoted Windows search path vulnerability in Kaspersky Anti…
- CVE-2005-3664Heap-based buffer overflow in Kaspersky Anti-Virus Engine, a…
- CVE-2005-3665Multiple cross-site scripting (XSS) vulnerabilities in phpMy…
- CVE-2005-3667Multiple unspecified vulnerabilities in multiple unspecified…
- CVE-2005-3668Multiple buffer overflows in multiple unspecified implementa…
- CVE-2005-3669Multiple unspecified vulnerabilities in the Internet Key Exc…
- CVE-2005-3670Multiple unspecified vulnerabilities in the Internet Key Exc…
- CVE-2005-3671The Internet Key Exchange version 1 (IKEv1) implementation i…
- CVE-2005-3672The Internet Key Exchange version 1 (IKEv1) implementation i…
Are you affected by CVE-2005-3666?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
