CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.0. It may be remotely exploitable. Exploitation may require the attacker to be authenticated. It may lead to a denial-of-service condition.
CVE
CVE-2011-4073
Severity
MEDIUM
CVSS
4
EPSS
2.09%
Original NVD Description
Use-after-free vulnerability in the cryptographic helper handler functionality in Openswan 2.3.0 through 2.6.36 allows remote authenticated users to cause a denial of service (pluto IKE daemon crash) via vectors related to the (1) quick_outI1_continue and (2) quick_outI1 functions.