PT-2006-1500 · Freebsd · Freebsd
Scott Wood
·
Published
2006-02-02
·
Updated
2017-07-20
·
CVE-2006-0433
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
FreeBSD versions 5.3 through 5.4
Description
The issue is related to the Selective Acknowledgement (SACK) in FreeBSD, which does not properly handle an incoming selective acknowledgement when there is insufficient memory. This might allow remote attackers to cause a denial of service, resulting in an infinite loop.
Recommendations
For versions 5.3 and 5.4, consider applying a patch or updating to a newer version that addresses the SACK handling issue to prevent potential denial of service attacks.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Freebsd