CVE-2004-0607
CRITICAL
10.0
CVSS Severity Score
Vulnerability Description
The eay_check_x509cert function in KAME Racoon successfully verifies certificates even when OpenSSL validation fails, which could allow remote attackers to bypass authentication.
Affected Platforms (CPE)
📦
Ipsec Tools
Ipsec Tools
= 0.3📦
Ipsec Tools
Ipsec Tools
= 0.3.1📦
Ipsec Tools
Ipsec Tools
= 0.3.2📦
Ipsec Tools
Ipsec Tools
= 0.3_rc1📦
Ipsec Tools
Ipsec Tools
= 0.3_rc2📦
Ipsec Tools
Ipsec Tools
= 0.3_rc3📦
Ipsec Tools
Ipsec Tools
= 0.3_rc4📦
Ipsec Tools
Ipsec Tools
= 0.3_rc5📦
Kame
Racoon
All versions📦
Kame
Racoon
= 2003-07-11📦
Kame
Racoon
= 2004-04-05📦
Kame
Racoon
= 2004-04-07b📦
Kame
Racoon
= 2004-05-03💻
Redhat
Enterprise Linux
= 3.0💻
Redhat
Enterprise Linux
= 3.0💻
Redhat
Enterprise Linux
= 3.0💻
Redhat
