PT-2006-1500 · Freebsd · Freebsd

Scott Wood

·

Published

2006-02-02

·

Updated

2017-07-20

·

CVE-2006-0433

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions FreeBSD versions 5.3 through 5.4
Description The issue is related to the Selective Acknowledgement (SACK) in FreeBSD, which does not properly handle an incoming selective acknowledgement when there is insufficient memory. This might allow remote attackers to cause a denial of service, resulting in an infinite loop.
Recommendations For versions 5.3 and 5.4, consider applying a patch or updating to a newer version that addresses the SACK handling issue to prevent potential denial of service attacks.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-0433

Affected Products

Freebsd