CVE-2025-14769: ipfw denial of service
In some cases, the tcp-setmss handler may free the packet data and throw an error without halting the rule processing engine. A subsequent rule can then allow the traffic after the packet data is gone, resulting in a NULL pointer dereference.
Maliciously crafted packets sent from a remote host may result in a Denial of Service (DoS) if the tcp-setmss directive is used and a subsequent rule would allow the traffic to pass.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14769?
CVE-2025-14769 is classified as a denial of service vulnerability in FreeBSD.
How do I fix CVE-2025-14769?
To fix CVE-2025-14769, upgrade to the patched version of FreeBSD that addresses this vulnerability.
What versions of FreeBSD are affected by CVE-2025-14769?
CVE-2025-14769 affects FreeBSD versions 13.5 up to 13.5-p7 and 14.3 up to 14.3-p6.
What can an attacker do with CVE-2025-14769?
An attacker can exploit CVE-2025-14769 to cause a denial of service by sending maliciously crafted packets.
Is it safe to use FreeBSD if I'm on an affected version with CVE-2025-14769?
Using an affected version of FreeBSD without applying the security patch for CVE-2025-14769 is not safe.