5

CVE-2014-7250

The TCP stack in 4.3BSD Net/2, as used in FreeBSD 5.4, NetBSD possibly 2.0, and OpenBSD possibly 3.6, does not properly implement the session timer, which allows remote attackers to cause a denial of service (resource consumption) via crafted packets.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Bsd ≫ Bsd Version 4.3
Freebsd ≫ Freebsd Version 5.4
Netbsd ≫ Netbsd Version 2.0
Openbsd ≫ Openbsd Version 3.6
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.75% 0.907
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://jvn.jp/en/jp/JVN07930208/index.html
Vendor Advisory
http://jvndb.jvn.jp/jvndb/JVNDB-2014-000134
Vendor Advisory
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=195243