← Vulnerability feed

Vulnerability record · CVE-2005-3670 · published 18 November 2005

CVE-2005-3670: Hp jetdirect 635n vulnerability

Hp · Jetdirect 635n

Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in HP HP-UX B.11.00, B.11.11, and B.11.23 running IPSec, HP Jetdirect 635n IPv6/IPsec Print Server, and HP Tru64 UNIX 5.1B-3 and 5.1B-2/PK4, allow remote attackers to cause a denial of service via certain IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the HP advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.

7.8 CVSS 2.0 High EPSS 9.1% · top 4.9%
7.8CVSS 2.0 base score
9.1%EPSS exploitation probability, 30 days
NoNot in CISA KEV
3Affected product versions listed by NVD
34References, 2 tagged exploit
16 Jun 2026Last modified by NVD

Description

Multiple unspecified vulnerabilities in the Internet Key Exchange version 1 (IKEv1) implementation in HP HP-UX B.11.00, B.11.11, and B.11.23 running IPSec, HP Jetdirect 635n IPv6/IPsec Print Server, and HP Tru64 UNIX 5.1B-3 and 5.1B-2/PK4, allow remote attackers to cause a denial of service via certain IKE packets, as demonstrated by the PROTOS ISAKMP Test Suite for IKEv1. NOTE: due to the lack of details in the HP advisory, it is unclear which of CVE-2005-3666, CVE-2005-3667, and/or CVE-2005-3668 this issue applies to.

AV:N/AC:L/Au:N/C:N/I:N/A:C

Affected products

3 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://jvn.jp/niscc/NISCC-273756/index.html Patch
http://secunia.com/advisories/17598 Vendor Advisory
http://secunia.com/advisories/19174 PatchVendor Advisory
http://securitytracker.com/id?1015227 Patch
http://securitytracker.com/id?1015229 Patch
http://securitytracker.com/id?1015727 Patch
http://www.ee.oulu.fi/research/ouspg/protos/testing/c09/isakmp/ Exploit
http://www.kb.cert.org/vuls/id/226364 PatchUS Government Resource
http://www.kb.cert.org/vuls/id/MIMG-6J6QS4 US Government Resource
http://www.niscc.gov.uk/niscc/docs/re-20051114-01014.pdf?lang=en
http://www.securityfocus.com/bid/15471
http://www.securityfocus.com/bid/15474
http://www.securityfocus.com/bid/17030
http://www.vupen.com/english/advisories/2005/2462 Vendor Advisory
http://www.vupen.com/english/advisories/2006/0880 Vendor Advisory
http://www2.itrc.hp.com/service/cki/docDisplay.do?admit=-1335382922+1141762289787+28353475&docId=c00602119
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5642
http://jvn.jp/niscc/NISCC-273756/index.html Patch
http://secunia.com/advisories/17598 Vendor Advisory
http://secunia.com/advisories/19174 PatchVendor Advisory
http://securitytracker.com/id?1015227 Patch
http://securitytracker.com/id?1015229 Patch
http://securitytracker.com/id?1015727 Patch
http://www.ee.oulu.fi/research/ouspg/protos/testing/c09/isakmp/ Exploit
http://www.kb.cert.org/vuls/id/226364 PatchUS Government Resource
http://www.kb.cert.org/vuls/id/MIMG-6J6QS4 US Government Resource
http://www.niscc.gov.uk/niscc/docs/re-20051114-01014.pdf?lang=en
http://www.securityfocus.com/bid/15471
http://www.securityfocus.com/bid/15474
http://www.securityfocus.com/bid/17030
http://www.vupen.com/english/advisories/2005/2462 Vendor Advisory
http://www.vupen.com/english/advisories/2006/0880 Vendor Advisory
http://www2.itrc.hp.com/service/cki/docDisplay.do?admit=-1335382922+1141762289787+28353475&docId=c00602119
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5642

Track CVE-2005-3670 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2012-1823PHP-CGI query string option injection enables remote code executionPHP versions before 5.3.12 and 5.4.x before 5.4.2, when run as a CGI script (php-cgi), mishandle query strings that lack an equals sign, allowing com…KEVEPSS 100%analysed10.0CVE-2012-0131Hp distributed computing environment vulnerabilityDistributed Computing Environment (DCE) 1.8 and 1.9 on HP HP-UX B.11.11 and B.11.23 allows remote attackers to cause a denial of service or possibly …EPSS 7.4%10.0CVE-2008-1668Hp-ux permissions and access controls vulnerabilityftpd.c in (1) wu-ftpd 2.4.2 and (2) ftpd in HP HP-UX B.11.11 assigns uid 0 to the FTP client in certain operating-system misconfigurations in which P…EPSS 4.5%10.0CVE-2008-1662Hp-ux vulnerabilityUnspecified vulnerability in the HP System Administration Manager (SAM) on HP-UX B.11.11 and B.11.23, when used to configure NFS, might allow remote …EPSS 4.4%10.0CVE-2007-6425Hp-ux memory buffer overflow vulnerabilityUnspecified vulnerability in HP-UX B.11.31, when running ARPA Transport, allows remote attackers to cause a denial of service via unknown vectors.EPSS 4.3%10.0CVE-2007-6195Hp-ux memory buffer overflow vulnerabilityBuffer overflow in the sw_rpc_agent_init function in swagentd in Software Distributor (SD), and possibly other DCE applications, in HP HP-UX B.11.11 …EPSS 14%10.0CVE-2007-4241Hp-ux vulnerabilityBuffer overflow in ldcconn in Hewlett-Packard (HP) Controller for Cisco Local Director on HP-UX 11.11i allows remote attackers to execute arbitrary c…EPSS 11%10.0CVE-2007-2791Hp tru64 vulnerabilityUnspecified vulnerability in the Secure Shell (SSH) in HP Tru64 UNIX 5.1B-4 and 5.1B-3 allows remote attackers to identify valid users via unspecifie…EPSS 6.5%

Source: NIST National Vulnerability Database (record CVE-2005-3670), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.