First published: Tue Apr 10 2018(Updated: )
In FreeBSD before 11.0-STABLE, 11.0-RELEASE-p10, 10.3-STABLE, and 10.3-RELEASE-p19, ipfilter using "keep state" or "keep frags" options can cause a kernel panic when fed specially crafted packet fragments due to incorrect memory handling.
Credit: secteam@freebsd.org
Affected Software | Affected Version | How to fix |
---|---|---|
FreeBSD FreeBSD | <=11.0 | |
FreeBSD FreeBSD | =10.3 | |
FreeBSD FreeBSD | =10.3-p19 | |
FreeBSD FreeBSD | =11.0-p10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.