PT-2018-17823 · Freebsd · Freebsd
Publicado
2018-08-14
·
Atualizado
2018-11-13
·
CVE-2018-6923
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
FreeBSD versions prior to 11.1-STABLE
FreeBSD versions prior to 11.2-RELEASE-p2
FreeBSD versions prior to 11.1-RELEASE-p13
Description
The issue affects the ip fragment reassembly code, allowing a remote attacker to cause excessive system resource consumption, leading to a denial of service. This can be achieved by sending arbitrary ip fragments.
Recommendations
For versions prior to 11.1-STABLE, update to 11.1-STABLE or later.
For versions prior to 11.2-RELEASE-p2, update to 11.2-RELEASE-p2 or later.
For versions prior to 11.1-RELEASE-p13, update to 11.1-RELEASE-p13 or later.
Correção
DoS
Resource Exhaustion
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Freebsd