There is a null dereference crash in racoon's gssapi.c. which causes DoS on the IKE mechanism. It requires USE="kerberos" which may not be in wide spread use. Reproducible: Always Exploit and details here: https://www.altsci.com/ipsec/ipsec-tools-sa.html Patch posted here: http://seclists.org/fulldisclosure/2015/May/83 -- Regards, Mick
*** This bug has been marked as a duplicate of bug 550118 ***