CVE-2005-3768
Buffer overflow in the Internet Key Exchange version 1 (IKEv1) implementation in Symantec Dynamic VPN Services, as used in Enterprise Firewall, Gateway Security, and Firewall /VPN Appliance products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1.
Published:Nov 23, 2005
Last Modified:Apr 16, 2026
EPS:Nov 23, 2005
EPSS Score:0.04
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Symantec
Product
Enterprise Firewall
Symantec
Enterprise Firewall
Vendor
Symantec
Product
Firewall Vpn Appliance 100
Symantec
Firewall Vpn Appliance 100
Vendor
Symantec
Product
Firewall Vpn Appliance 200
Symantec
Firewall Vpn Appliance 200
Vendor
Symantec
Product
Gateway Security 300
Symantec
Gateway Security 300
Vendor
Symantec
Product
Gateway Security 400
Symantec
Gateway Security 400
Vendor
Symantec
Product
Gateway Security 5000 Series
Symantec
Gateway Security 5000 Series
Vendor
Symantec
Product
Gateway Security 5100
Symantec
Gateway Security 5100
Vendor
Symantec
Product
Gateway Security 5300
Symantec
Gateway Security 5300
Vendor
Symantec
Product
Gateway Security 5310
Symantec
Gateway Security 5310
Vendor
Symantec
Product
Gateway Security 5400
Symantec
Gateway Security 5400
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
