CVE-2007-1841
Last modified
CVE-2007-1841 is a vulnerability of currently unknown severity. The isakmp_info_recv function in src/racoon/isakmp_inf.c in racoon in Ipsec-tools before 0.6.7 allows remote attackers to cause a denial of service (tunnel crash) via crafted (1) DELETE (ISAKMP_NPTYPE_D) and (2) NOTIFY (ISAKMP_NPTYPE_N) messages.. EPSS estimates a 2.85% chance of exploitation in the next 30 days.
Description
The isakmp_info_recv function in src/racoon/isakmp_inf.c in racoon in Ipsec-tools before 0.6.7 allows remote attackers to cause a denial of service (tunnel crash) via crafted (1) DELETE (ISAKMP_NPTYPE_D) and (2) NOTIFY (ISAKMP_NPTYPE_N) messages.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Ipsec-Tools | Ipsec-Tools | <= 0.6.2 |
References
- http://secunia.com/advisories/24815Vendor Advisory
- http://sourceforge.net/mailarchive/message.php?msg_name=20070406123739.GA1546%40zen.incPatch, Vendor Advisory
- http://secunia.com/advisories/24815Vendor Advisory
- http://sourceforge.net/mailarchive/message.php?msg_name=20070406123739.GA1546%40zen.incPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-1841?
How severe is CVE-2007-1841?
How do I fix CVE-2007-1841?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2007
- CVE-2007-1835PHP 4 before 4.4.5 and PHP 5 before 5.2.1, when using an emp…
- CVE-2007-1836The command line administration interface in Data Domain OS …
- CVE-2007-1837Multiple PHP remote file inclusion vulnerabilities in MangoB…
- CVE-2007-1838SQL injection vulnerability in view.php in the Friendfinder …
- CVE-2007-1839Multiple PHP remote file inclusion vulnerabilities in CodeBB…
- CVE-2007-1840lib/modules.inc in LDAP Account Manager (LAM) before 1.3.0 d…
- CVE-2007-1842Directory traversal vulnerability in login.php in JSBoard be…
- CVE-2007-1843PHP remote file inclusion vulnerability in gmapfactory/param…
- CVE-2007-1844Multiple PHP remote file inclusion vulnerabilities in Aardva…
- CVE-2007-1845SQL injection vulnerability in show_event.php in the Expande…
- CVE-2007-1846SQL injection vulnerability in index.php in the MyAds 2.04jp…
- CVE-2007-1847SQL injection vulnerability in viewcat.php in the Repository…
Are you affected by CVE-2007-1841?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
