← Back

CVE-2019-5599

nvd nist
Published: Jul 2, 2019Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

In FreeBSD 12.0-STABLE before r349197 and 12.0-RELEASE before 12.0-RELEASE-p6, a bug in the non-default RACK TCP stack can allow an attacker to cause several linked lists to grow unbounded and cause an expensive list traversal on every packet being processed, leading to resource exhaustion and a denial of service.

Affected (6)

Products: Freebsd: Freebsd
1 product
Freebsd
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Freebsd
Version 12.0
Version 12.0 p1
Version 12.0 p2
Version 12.0 p3
Version 12.0 p4
Version 12.0 p5

References (20)

Source: secteam@freebsd.org
Mailing ListThird Party Advisory
Source: secteam@freebsd.org
Third Party Advisory
Source: secteam@freebsd.org
Mailing ListMitigationPatchThird Party Advisory
Source: secteam@freebsd.org
MitigationVendor Advisory
Source: secteam@freebsd.org
Third Party Advisory
Source: secteam@freebsd.org
Third Party Advisory
Source: secteam@freebsd.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListMitigationPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
MitigationVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource

Timeline

No history available yet.