CVE-2006-6858

Publication date

2007-01-04 16:00:00

Family

mitre

State

PUBLISHED

Description

Miredo 0.9.8 through 1.0.5 does not properly authenticate a Teredo bubble during UDP hole punching with HMAC-MD5-64 hashing, which allows remote attackers to impersonate an arbitrary Teredo client.