vendor:
SafeNet HighAssurance Remote
by:
John Anderson, mu-b
7.5
CVSS
HIGH
Denial of Service
CWE
Product Name: SafeNet HighAssurance Remote
Affected Version From: SafeNet HighAssurance Remote 1.4.0 (Build 12) (win32)
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested: Windows
2006-2007
SafeNet HighAssurance Remote ~1.4.0 Ring0 DoS
Kernel level (Ring0) DoS in IPv6 support of IPSecDrv.sys (causes an infinite loop in searching option headers 0x1000BEB0). This POC only works on a local subnet since it sends an invalid packet and any sensible router will drop it. However, this is exploitable remotely with IPv6.