Lucene search

K
cveFreebsdCVE-2006-0381
HistoryJan 25, 2006 - 10:03 p.m.

CVE-2006-0381

2006-01-2522:03:00
freebsd
web.nvd.nist.gov
29
cve-2006-0381
ip fragment cache
pf
denial of service
freebsd
openbsd
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.4

Confidence

High

EPSS

0.042

Percentile

92.3%

A logic error in the IP fragment cache functionality in pf in FreeBSD 5.3, 5.4, and 6.0, and OpenBSD, when a ‘scrub fragment crop’ or ‘scrub fragment drop-ovl’ rule is being used, allows remote attackers to cause a denial of service (crash) via crafted packets that cause a packet fragment to be inserted twice.

Affected configurations

Nvd
Node
freebsdfreebsdMatch5.3
OR
freebsdfreebsdMatch5.3release
OR
freebsdfreebsdMatch5.3releng
OR
freebsdfreebsdMatch5.3stable
OR
freebsdfreebsdMatch5.4pre-release
OR
freebsdfreebsdMatch5.4release
OR
freebsdfreebsdMatch5.4releng
OR
freebsdfreebsdMatch6.0release
OR
freebsdfreebsdMatch6.0stable
VendorProductVersionCPE
freebsdfreebsd5.3cpe:2.3:o:freebsd:freebsd:5.3:*:*:*:*:*:*:*
freebsdfreebsd5.3cpe:2.3:o:freebsd:freebsd:5.3:release:*:*:*:*:*:*
freebsdfreebsd5.3cpe:2.3:o:freebsd:freebsd:5.3:releng:*:*:*:*:*:*
freebsdfreebsd5.3cpe:2.3:o:freebsd:freebsd:5.3:stable:*:*:*:*:*:*
freebsdfreebsd5.4cpe:2.3:o:freebsd:freebsd:5.4:pre-release:*:*:*:*:*:*
freebsdfreebsd5.4cpe:2.3:o:freebsd:freebsd:5.4:release:*:*:*:*:*:*
freebsdfreebsd5.4cpe:2.3:o:freebsd:freebsd:5.4:releng:*:*:*:*:*:*
freebsdfreebsd6.0cpe:2.3:o:freebsd:freebsd:6.0:release:*:*:*:*:*:*
freebsdfreebsd6.0cpe:2.3:o:freebsd:freebsd:6.0:stable:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.4

Confidence

High

EPSS

0.042

Percentile

92.3%