Vulnerability Details CVE-2009-3675
LSASS.exe in the Local Security Authority Subsystem Service (LSASS) in Microsoft Windows 2000 SP4, XP SP2 and SP3, and Server 2003 SP2 allows remote authenticated users to cause a denial of service (CPU consumption) via a malformed ISAKMP request over IPsec, aka "Local Security Authority Subsystem Service Resource Exhaustion Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.539
EPSS Ranking 97.8%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2009-3675
-
cpe:2.3:o:microsoft:windows_2000:sp4
-
cpe:2.3:o:microsoft:windows_2003_server:-
-
cpe:2.3:o:microsoft:windows_xp:-
-
cpe:2.3:o:microsoft:windows_xp:unknown