Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Novell BorderManager ISAKMP Predictable Cookie Vulnerability

Novell BorderManager is prone to a vulnerability that causes the software to create predictable ISAKMP cookies.

Exploiting this vulnerability may lead to various attacks including denial-of-service conditions and replay attacks that allow attackers to gain unauthorized access to sessions. Other attacks may be possible as well.

Novell BorderManager 3.8 Support Pack 4 is reported vulnerable; prior versions may also be affected.

This issue may be related to BID 20428 (Novell BorderManager IPSec/IKE Remote Denial Of Service Vulnerability). If further analysis reveals that these issues are identical, this BID will be retired.







 

Privacy Statement
Copyright 2009, SecurityFocus