← Back

CVE-2009-0687

nvd nist
Published: Aug 11, 2009Modified: Apr 23, 2026

JSON object

Loading...
7.8
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:C
Exploitability: 10.0 / Impact: 6.9
Source: NVD

Description

The pf_test_rule function in OpenBSD Packet Filter (PF), as used in OpenBSD 4.2 through 4.5, NetBSD 5.0 before RC3, MirOS 10 and earlier, and MidnightBSD 0.3-current allows remote attackers to cause a denial of service (panic) via crafted IP packets that trigger a NULL pointer dereference during translation, related to an IPv4 packet with an ICMPv6 payload.

Affected (7)

Products: Midnightbsd: Midnightbsd · Mirbsd: Miros · Netbsd: Netbsd · +1 more
Show all products
1 product
Midnightbsd
1 product
Miros
1 product
Netbsd
1 product
Openbsd
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
Version 0.3-current
Up to 10
Version 5.0
Openbsd
Version 4.2
Version 4.3
Version 4.4
Version 4.5

Related CWEs

References (24)

ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.3/common/013_pf.patch (unsafe URL)
Source: cret@cert.org
PatchVendor Advisory
Source: cret@cert.org
PatchVendor Advisory
Source: cret@cert.org
PatchVendor Advisory
Source: cret@cert.org
PatchVendor Advisory
Source: cret@cert.org
Source: cret@cert.org
PatchVendor Advisory
ftp://ftp.openbsd.org/pub/OpenBSD/patches/4.3/common/013_pf.patch (unsafe URL)
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.