Threat Level: green Handler on Duty: Brad Duncan

SANS ISC: InfoSec Handlers Diary Blog - FreeBSD packet filter (pf) DoS using fragments. InfoSec Handlers Diary Blog

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

FreeBSD packet filter (pf) DoS using fragments.

Published: 2006-01-25
Last Updated: 2006-01-25 18:44:53 UTC
by Swa Frantzen (Version: 1)
0 comment(s)
FreeBSD announced a patch for a vulnerability that can trigger a kernel panic due to crafted fragments and their handling in pf(4).

Workrounds are available: do not use "scrub fragment crop" or "scrub fragment drop-ovl" in the pf.conf(5)

More information:
Swa Frantzen
0 comment(s)
Diary Archives