MidnightBSD

Advisories for global_technology_associates

CVE-2002-0666 MEDIUM

IPSEC implementations including (1) FreeS/WAN and (2) KAME do not properly calculate the length of authentication data, which allows remote attackers to cause a denial of service (kernel panic) via spoofed, short Encapsulating Security Payload (ESP) packets, which result in integer signedness errors.

CVSS 2.0

Severity: MEDIUM

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
frees_wan frees_wan 1.9.4
netbsd netbsd 1.5.1
freebsd freebsd 4.6
netbsd netbsd 1.5.3
nec ix1011 *
global_technology_associates gnat_box_firmware 3.3
apple mac_os_x_server 10.2
netbsd netbsd 1.5.2
frees_wan frees_wan 1.9.5
netbsd netbsd 1.6
nec ix1020 *
apple mac_os_x 10.2
nec ix1050 *
frees_wan frees_wan 1.9
frees_wan frees_wan 1.9.3
global_technology_associates gnat_box_firmware 3.1
global_technology_associates gnat_box_firmware 3.2
frees_wan frees_wan 1.9.1
frees_wan frees_wan 1.9.6
netbsd netbsd 1.5
nec ix1010 *
nec ix2010 *
frees_wan frees_wan 1.9.2
nec bluefire_ix1035_router *