Buffer Overflow in Symantec Dynamic VPN Services Affects Enterprise Firewall and Security Appliances
CVE-2005-3768

Currently unrated

Key Information:

Vendor
Symantec
Vendor
CVE Published:
23 November 2005

Summary

A buffer overflow vulnerability in the Internet Key Exchange version 1 (IKEv1) implementation within Symantec Dynamic VPN Services allows remote attackers to send crafted IKE packets. This could lead to a denial of service or potentially enable the execution of arbitrary code. The threat is demonstrated by the PROTOS ISAKMP Test Suite that targets IKEv1 protocols, highlighting the severity of exploiting this flaw across various Symantec security products.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.