CVE-2004-0164 describes a vulnerability in the KAME IKE daemon (racoon) where improper handling of hash values allows remote attackers to delete certificates. This flaw can be triggered by specially crafted delete messages or INITIAL-CONTACT messages. The vulnerability has a CVSS score of 5.0, indicating a medium severity, with a low attack complexity and no authentication required, potentially leading to partial integrity impact. While there is an ExploitDB entry for an "Initial Contact" SA Deletion, there is no evidence of active exploitation, and it lacks community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
all_versionsCPE matchmatch criteria | cpe:2.3:a:kame:racoon:all_versions:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.