← Back

CVE-2018-6923

nvd nist
Published: Sep 4, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

In FreeBSD before 11.1-STABLE, 11.2-RELEASE-p2, 11.1-RELEASE-p13, ip fragment reassembly code is vulnerable to a denial of service due to excessive system resource consumption. This issue can allow a remote attacker who is able to send an arbitrary ip fragments to cause the machine to consume excessive resources.

Affected (40)

Products: Freebsd: Freebsd
1 product
Freebsd
Configuration A
40 vulnerable
Vulnerable SoftwareAffected Versions
Freebsd
Version 10.0
Version 11.0
Version 11.1
Version 11.2
Version 2.2
Version 3.0
Version 4.10
Version 4.11
Version 4.3
Version 4.4
Version 4.5
Version 4.6
Version 4.7
Version 4.8
Version 4.9
Version 5.0
Version 5.1
Version 5.2
Version 5.3
Version 5.4
Version 5.5
Version 6.0
Version 6.1
Version 6.2
Version 6.3
Version 6.4
Version 7.0
Version 7.1
Version 7.2
Version 7.3
Version 7.4
Version 8.0
Version 8.1
Version 8.2
Version 8.3
Version 8.4
Version 9.0
Version 9.1
Version 9.2
Version 9.3

References (6)

Source: secteam@freebsd.org
Third Party AdvisoryVDB Entry
Source: secteam@freebsd.org
Third Party AdvisoryVDB Entry
Source: secteam@freebsd.org
MitigationVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationVendor Advisory

Timeline

No history available yet.