PT-2018-17823 · Freebsd · Freebsd
Published
2018-08-14
·
Updated
2018-11-13
·
CVE-2018-6923
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
FreeBSD versions prior to 11.1-STABLE
FreeBSD versions prior to 11.2-RELEASE-p2
FreeBSD versions prior to 11.1-RELEASE-p13
Description
The issue affects the ip fragment reassembly code, allowing a remote attacker to cause excessive system resource consumption, leading to a denial of service. This can be achieved by sending arbitrary ip fragments.
Recommendations
For versions prior to 11.1-STABLE, update to 11.1-STABLE or later.
For versions prior to 11.2-RELEASE-p2, update to 11.2-RELEASE-p2 or later.
For versions prior to 11.1-RELEASE-p13, update to 11.1-RELEASE-p13 or later.
Fix
DoS
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Freebsd