A flaw was discovered in the manner which racoon deals with ohphaned ph1s. The initial report of this states: Currently racoon does not remove orphaned ph1s initiated by a remote side. This creates a lot of problems, as such ph1s may stuck nearly forever. The thread can be found here: http://sourceforge.net/mailarchive/forum.php?thread_name=48a0c7a0.qPeWZAE0PY8bDDq%2B%25olel%40ans.pl&forum_name=ipsec-tools-devel
Created attachment 314120 [details] Upstream patch from CVS
CVE id CVE-2008-3652 was assigned to this issue: src/racoon/handler.c in racoon in ipsec-tools does not remove an "orphaned ph1" (phase 1) handle when it has been initiated remotely, which allows remote attackers to cause a denial of service (resource consumption).
ipsec-tools-0.7.1-5.fc8 has been submitted as an update for Fedora 8. http://admin.fedoraproject.org/updates/ipsec-tools-0.7.1-5.fc8
ipsec-tools-0.7.1-5.fc9 has been submitted as an update for Fedora 9. http://admin.fedoraproject.org/updates/ipsec-tools-0.7.1-5.fc9
ipsec-tools-0.7.1-5.fc9 has been pushed to the Fedora 9 stable repository. If problems still persist, please make note of it in this bug report.
ipsec-tools-0.7.1-5.fc8 has been pushed to the Fedora 8 stable repository. If problems still persist, please make note of it in this bug report.
This issue was addressed in: Red Hat Enterprise Linux: http://rhn.redhat.com/errata/RHSA-2008-0849.html Fedora: https://admin.fedoraproject.org/updates/F8/FEDORA-2008-9016 https://admin.fedoraproject.org/updates/F9/FEDORA-2008-9007