CVE-2009-1574
ipsec-tools < 0.7.2 - Denial of Service via Crafted Fragmented Packets
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-1574. PoCs published by mu-b.
AI-analyzed exploit summary This exploit sends a malformed ISAKMP fragmentation payload to trigger a denial-of-service (DoS) in ipsec-tools racoon. It constructs a UDP packet with a crafted ISAKMP header and fragmentation payload, causing the target service to crash.
Description
racoon/isakmp_frag.c in ipsec-tools before 0.7.2 allows remote attackers to cause a denial of service (crash) via crafted fragmented packets without a payload, which triggers a NULL pointer dereference.
Exploits (1)
This exploit sends a malformed ISAKMP fragmentation payload to trigger a denial-of-service (DoS) in ipsec-tools racoon. It constructs a UDP packet with a crafted ISAKMP header and fragmentation payload, causing the target service to crash.