FreeBSD TCP Denial of Service Vulnerability (CVE-2015-1417)
FreeBSD TCP Denial of Service Vulnerability (CVE-2015-1417)
Release date:
Updated on:
Affected Systems:
FreeBSD
Description:
CVE (CAN) ID: CVE-2015-1417
VNET is a network stack virtualization technology introduced in FreeBSD 8.0.
A security vulnerability exists in the introduction of VNET. After successful exploitation, all network communication can be stopped, resulting in DOS. By default, VNET is not enabled.
<* Source: Patrick Kelsey
Link: https://security.FreeBSD.org/advisories/FreeBSD-SA-15:15.tcp.asc
*>
Suggestion:
Vendor patch:
FreeBSD
-------
FreeBSD has released a Security Bulletin (FreeBSD-SA-15: 15.tcp) and patches for this:
FreeBSD-SA-15: 15.tcp: Resource exhaustion in TCP reassembly
Link: https://security.FreeBSD.org/advisories/FreeBSD-SA-15:15.tcp.asc
This article permanently updates the link address: