Lucene search

K
cve[email protected]CVE-2015-1417
HistoryJul 25, 2017 - 6:29 p.m.

CVE-2015-1417

2017-07-2518:29:00
CWE-400
web.nvd.nist.gov
22
freebsd
inet module
cve-2015-1417
vnet
denial of service
remote attackers
tcp connections
nvd

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

7.3 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.2%

The inet module in FreeBSD 10.2x before 10.2-PRERELEASE, 10.2-BETA2-p2, 10.2-RC1-p1, 10.1x before 10.1-RELEASE-p16, 9.x before 9.3-STABLE, 9.3-RELEASE-p21, and 8.x before 8.4-STABLE, 8.4-RELEASE-p35 on systems with VNET enabled and at least 16 VNET instances allows remote attackers to cause a denial of service (mbuf consumption) via multiple concurrent TCP connections.

Affected configurations

NVD
Node
freebsdfreebsdMatch8.4-
OR
freebsdfreebsdMatch8.4beta1
OR
freebsdfreebsdMatch8.4p11
OR
freebsdfreebsdMatch8.4p12
OR
freebsdfreebsdMatch8.4p13
OR
freebsdfreebsdMatch8.4p14
OR
freebsdfreebsdMatch8.4p15
OR
freebsdfreebsdMatch8.4p16
OR
freebsdfreebsdMatch8.4p17
OR
freebsdfreebsdMatch8.4p19
OR
freebsdfreebsdMatch8.4p2
OR
freebsdfreebsdMatch8.4p20
OR
freebsdfreebsdMatch8.4p21
OR
freebsdfreebsdMatch8.4p22
OR
freebsdfreebsdMatch8.4p23
OR
freebsdfreebsdMatch8.4p24
OR
freebsdfreebsdMatch8.4p26
OR
freebsdfreebsdMatch8.4p27
OR
freebsdfreebsdMatch8.4p3
OR
freebsdfreebsdMatch8.4p30
OR
freebsdfreebsdMatch8.4p33
OR
freebsdfreebsdMatch8.4p34
OR
freebsdfreebsdMatch8.4p4
OR
freebsdfreebsdMatch8.4p7
OR
freebsdfreebsdMatch8.4p8
OR
freebsdfreebsdMatch8.4p9
OR
freebsdfreebsdMatch9.3-
OR
freebsdfreebsdMatch9.3p1
OR
freebsdfreebsdMatch9.3p10
OR
freebsdfreebsdMatch9.3p12
OR
freebsdfreebsdMatch9.3p13
OR
freebsdfreebsdMatch9.3p16
OR
freebsdfreebsdMatch9.3p19
OR
freebsdfreebsdMatch9.3p2
OR
freebsdfreebsdMatch9.3p20
OR
freebsdfreebsdMatch9.3p3
OR
freebsdfreebsdMatch9.3p5
OR
freebsdfreebsdMatch9.3p6
OR
freebsdfreebsdMatch9.3p7
OR
freebsdfreebsdMatch9.3p8
OR
freebsdfreebsdMatch9.3p9
OR
freebsdfreebsdMatch10.1-
OR
freebsdfreebsdMatch10.1p1
OR
freebsdfreebsdMatch10.1p10
OR
freebsdfreebsdMatch10.1p12
OR
freebsdfreebsdMatch10.1p15
OR
freebsdfreebsdMatch10.1p16
OR
freebsdfreebsdMatch10.1p2
OR
freebsdfreebsdMatch10.1p3
OR
freebsdfreebsdMatch10.1p4
OR
freebsdfreebsdMatch10.1p5
OR
freebsdfreebsdMatch10.1p6
OR
freebsdfreebsdMatch10.1p7
OR
freebsdfreebsdMatch10.1p8
OR
freebsdfreebsdMatch10.1p9
OR
freebsdfreebsdMatch10.2-

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

7.3 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

74.2%