CVE-2005-0162
RCETitle: Openswan pluto application stack-based buffer overflow RCE
RCE, Buffer Overflow
Proof Of Concept
No public PoC currently indexed for CVE-2005-0162.
CWE Category
NVD-CWE-noinfo
Published Date
Jan 26, 2005
Modified Date
Apr 03, 2025
Exploit Status
Not Found
Score
7.2
CVSS v2.0
Exploit Probability (EPSS)
4.30%
Vulnerability Summary
CVE-2005-0162: Stack-based buffer overflow in the get_internal_addresses function in the pluto application for Openswan 1.x before 1.0.9, and Openswan 2.x before 2.3.0, when compiled with XAUTH and PAM enabled, allows remote authenticated attackers to execute arbitrary code.
Impacted Vendors
Reference Links
http://secunia.com/advisories/14038
http://secunia.com/advisories/14062
http://securitytracker.com/id?1013014
http://www.idefense.com/application/poi/display?id=190&type=vulnerabilities
http://www.openswan.org/support/vuln/IDEF0785/
http://www.osvdb.org/13195
http://www.redhat.com/archives/fedora-announce-list/2005-January/msg00103.html
http://www.securityfocus.com/bid/12377
https://exchange.xforce.ibmcloud.com/vulnerabilities/19078
http://secunia.com/advisories/14038
http://secunia.com/advisories/14062
http://securitytracker.com/id?1013014
http://www.idefense.com/application/poi/display?id=190&type=vulnerabilities
http://www.openswan.org/support/vuln/IDEF0785/
http://www.osvdb.org/13195
http://www.redhat.com/archives/fedora-announce-list/2005-January/msg00103.html
http://www.securityfocus.com/bid/12377
https://exchange.xforce.ibmcloud.com/vulnerabilities/19078
CVSS v2.0
Source Entity
[email protected]
Severity
HIGH
7.2
Access Vector
N/A
Authentication
N/A
RAW VECTOR
AV:L/AC:L/Au:N/C:C/I:C/A:C
Associated Attack Patterns (CAPEC)
Total: PatternsNo specific attack patterns mapped.
Likelihood
Severity
Page /
CVE-2005-0162 Exploits & PoCs (Proof Of Concept)
No public PoCs found in our database for this CVE.
MODIFIED
Vulnerability data or affected products updated.
PUBLISHED
Vulnerability first announced in NVD.
Attack Vector Matrix
Access Vector
N/A
Complexity
N/A
Privileges
N/A
Interaction
NONE
CVSS Vector String
AV:L/AC:L/Au:N/C:C/I:C/A:C
Affected Stack
No specific products linked.