PT-2006-1500 · Freebsd · Freebsd
Scott Wood
·
Publicado
2006-02-02
·
Atualizado
2017-07-20
·
CVE-2006-0433
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
FreeBSD versions 5.3 through 5.4
Description
The issue is related to the Selective Acknowledgement (SACK) in FreeBSD, which does not properly handle an incoming selective acknowledgement when there is insufficient memory. This might allow remote attackers to cause a denial of service, resulting in an infinite loop.
Recommendations
For versions 5.3 and 5.4, consider applying a patch or updating to a newer version that addresses the SACK handling issue to prevent potential denial of service attacks.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Freebsd