CyberSec.Space Logo
返回 CVE 浏览器

CVE-2004-0607

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0640%
EPSS Percentile3.25th
Published2004年12月6日
Last Modified2026年4月16日

Vulnerability Description

The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attackers to bypass authentication.

Affected Platforms (CPE)

📦
Ipsec Tools

Ipsec Tools

= 0.3
📦
Ipsec Tools

Ipsec Tools

= 0.3.1
📦
Ipsec Tools

Ipsec Tools

= 0.3.2
📦
Ipsec Tools

Ipsec Tools

= 0.3_rc1
📦
Ipsec Tools

Ipsec Tools

= 0.3_rc2
📦
Ipsec Tools

Ipsec Tools

= 0.3_rc3
📦
Ipsec Tools

Ipsec Tools

= 0.3_rc4
📦
Ipsec Tools

Ipsec Tools

= 0.3_rc5
📦
Kame

Racoon

All versions
📦
Kame

Racoon

= 2003-07-11
📦
Kame

Racoon

= 2004-04-05
📦
Kame

Racoon

= 2004-04-07b
📦
Kame

Racoon

= 2004-05-03
💻
Redhat

Enterprise Linux

= 3.0
💻
Redhat

Enterprise Linux

= 3.0
💻
Redhat

Enterprise Linux

= 3.0
💻
Redhat

Enterprise Linux Desktop

= 3.0

References & Advisories

相关漏洞威胁