CVE-2015-1417: High severity freebsd kernel vulnerability
The inet module in FreeBSD 10.2x before 10.2-PRERELEASE, 10.2-BETA2-p2, 10.2-RC1-p1, 10.1x before 10.1-RELEASE-p16, 9.x before 9.3-STABLE, 9.3-RELEASE-p21, and 8.x before 8.4-STABLE, 8.4-RELEASE-p35 on systems with VNET enabled and at least 16 VNET instances allows remote attackers to cause a denial of service (mbuf consumption) via multiple concurrent TCP connections.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1417?
The severity of CVE-2015-1417 is classified as high, as it allows remote attackers to cause a denial of service.
How do I fix CVE-2015-1417?
To fix CVE-2015-1417, users should upgrade their FreeBSD system to at least version 10.2-PRERELEASE or apply the relevant patches.
What versions of FreeBSD are affected by CVE-2015-1417?
CVE-2015-1417 affects FreeBSD versions 8.4, 9.3, and 10.1 before specific patch levels.
What impact does CVE-2015-1417 have on systems?
CVE-2015-1417 can lead to a denial of service, potentially impacting the availability of affected systems.
Is there a known exploit for CVE-2015-1417?
Yes, there are known exploits that take advantage of CVE-2015-1417, which can impact systems with VNET enabled.