SonicWALL firmware before 6.4.0.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted Internet Key Exchange (IKE) response packets, possibly including (1) a large Security Parameter Index (SPI) field, (2) a large number of payloads, or (3) a long payload.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
http://www.kb.cert.org/vuls/id/AAMN-5L74VD | |
http://www.kb.cert.org/vuls/id/287771 | third party advisory us government resource |