src/racoon/handler.c in racoon in ipsec-tools does not remove an "orphaned ph1" (phase 1) handle when it has been initiated remotely, which allows remote attackers to cause a denial of service (resource consumption).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.179
EPSS Ranking 94.7%