7.8

CVE-2009-0687

The pf_test_rule function in OpenBSD Packet Filter (PF), as used in OpenBSD 4.2 through 4.5, NetBSD 5.0 before RC3, MirOS 10 and earlier, and MidnightBSD 0.3-current allows remote attackers to cause a denial of service (panic) via crafted IP packets that trigger a NULL pointer dereference during translation, related to an IPv4 packet with an ICMPv6 payload.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MidnightbsdMidnightbsd Version0.3-current
MirbsdMiros Version <= 10
NetbsdNetbsd Version5.0
OpenbsdOpenbsd Version4.2
OpenbsdOpenbsd Version4.3
OpenbsdOpenbsd Version4.4
OpenbsdOpenbsd Version4.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 12.33% 0.932
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C