CVE

Id
8583  
CVE No.
CVE-2004-0155  
Status
Candidate  
Description
The KAME IKE Daemon Racoon, when authenticating a peer during Phase 1, validates the X.509 certificate but does not verify the RSA signature authentication, which allows remote attackers to establish unauthorized IP connections or conduct man-in-the-middle attacks using a valid, trusted X.509 certificate.  
Phase
Assigned (20040213)  
Votes
None (candidate not yet proposed)  
Comments