Executive brief
Windows IKE Extension is a core Windows networking component used to establish secure VPN and remote access connections. A null pointer dereference vulnerability allows a remote attacker to crash the IKE Extension service, disrupting VPN connectivity and remote access for affected users and organizations.
Technical details
A null pointer dereference vulnerability exists in the Windows IKE (Internet Key Exchange) Extension, a component responsible for IPsec protocol negotiation and VPN establishment. An unauthenticated remote attacker can send specially crafted network packets over the network to trigger the null pointer dereference, causing the IKE service to crash and resulting in a denial of service. No authentication is required and the attack is purely network-based. The vulnerability does not allow code execution or privilege escalation, but disrupts VPN and remote access availability. A patch is available from Microsoft.
Affected products
- Microsoft Windows IKE Extension
Timeline
- 2026-09-08: disclosed