FreshPorts - VuXML

This page displays vulnerability information about FreeBSD Ports.

The VUXML data was last processed by FreshPorts on 2024-04-19 20:48:44 UTC

List all Vulnerabilities, by package

List all Vulnerabilities, by date

k68

These are the vulnerabilities relating to the commit you have selected:

VuXML IDDescription
59c5f255-b309-11e9-a87f-a4badb2f4699FreeBSD -- ICMP/ICMP6 packet filter bypass in pf

Problem Description:

States in pf(4) let ICMP and ICMP6 packets pass if they have a packet in their payload matching an existing condition. pf(4) does not check if the outer ICMP or ICMP6 packet has the same destination IP as the source IP of the inner protocol packet.

Impact:

A maliciously crafted ICMP/ICMP6 packet could bypass the packet filter rules and be passed to a host that would otherwise be unavailable.


Discovery 2019-05-14
Entry 2019-07-30
FreeBSD-kernel
ge 12.0 lt 12.0_4

ge 11.2 lt 11.2_10

CVE-2019-5598
SA-19:06.pf