Vulnerabilities > CVE-2006-6858 - Remote Security vulnerability in Miredo 0.9.8/1.0.3/1.0.4
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL network
miredo
Summary
Miredo 0.9.8 through 1.0.5 does not properly authenticate a Teredo bubble during UDP hole punching with HMAC-MD5-64 hashing, which allows remote attackers to impersonate an arbitrary Teredo client.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |