Windows Internet Key Exchange (IKE) Extension Denial of Service Vulnerability
A null pointer dereference vulnerability in Windows Internet Key Exchange (IKE) Extension allows an unauthenticated remote attacker to send a specially crafted network packet that causes a denial of service condition by crashing the IKE service. This affects Windows 10 (versions 1809, 21H2, 22H2), Windows 11 (versions 23H2, 24H2, 25H2, 26H1), Windows Server 2019, 2022, and 2025. Microsoft has released fixes for all affected versions. Exploitation is unlikely in the wild but the vulnerability can disrupt IPsec-based VPN connectivity.
- Network access to the Windows device on UDP port 500 or 4500 (IKE protocol ports)
- IPsec/IKE service must be enabled and listening on the network
Patching may require device reboot — plan for process interruption
/api/v1/advisories/741ad9e1-325d-4edd-a310-88d025d46194Get OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.