VDB
CVE-2005-3768
CVE-2005-3768
PUBLISHED
CVSS 7.5 HIGH
Buffer overflow in the Internet Key Exchange version 1 (IKEv1) implementation in Symantec Dynamic VPN Services, as used in Enterprise Firewall, Gateway Security, and Firewall /VPN Appliance products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
EPSS 3.78% · 88.9th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
3.78%
88.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| symantec | gateway_security_5100 | |
| symantec | firewall_vpn_appliance_100 | |
| symantec | gateway_security_400 | 2.0 |
| symantec | gateway_security_5300 | 1.0 |
| symantec | firewall_vpn_appliance_200 | |
| symantec | gateway_security_300 | 2.0 |
| symantec | enterprise_firewall | 8.0, 8.0 |
| symantec | gateway_security_5400 | 2.0.1 |
| symantec | gateway_security_5000_series | 3.0 |
| n/a | n/a | n/a |
| symantec | gateway_security_5310 | 1.0 |
Timeline
- Nov 15, 2005 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- ADV-2005-2517 vdb
- http://secunia.com/advisories/17684 patch
- http://securitytracker.com/id?1015249 patch
- https://nvd.nist.gov/vuln/detail/CVE-2005-3768 advisory
- http://securityresponse.symantec.com/avcenter/security/Content/2005.11.21.html url
- http://securitytracker.com/id?1015247 url
- http://securitytracker.com/id?1015248 url