OSVDB ID: 28194

Title: OpenBSD isakmpd IPSec Packet Replay

Info

Disclosure

Aug 25, 2006

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

OpenBSD contains a flaw related to isakmpd creating a replay window of size 0 when responding to SA negotiations, which can be exploited by an attacker to capture IPSec packets and subsequently replay them, this may allow an attacker to bypass certain security restrictions. No further details have been provided.

Classification

Location: Remote / Network Access
Attack Type: Cryptographic
Impact: Loss of Confidentiality
Exploit: Exploit Unknown
Disclosure: OSVDB Verified

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, OpenBSD has released a patch to address this vulnerability.

Products

OpenBSD

OpenBSD

3.8
3.9

References

Credit

Unknown or Incomplete



Direct URL: http://osvdb.org/28194