[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2018-6922Date: (C)2018-08-16   (M)2024-01-26


One of the data structures that holds TCP segments in all versions of FreeBSD prior to 11.2-RELEASE-p1, 11.1-RELEASE-p12, and 10.4-RELEASE-p10 uses an inefficient algorithm to reassemble the data. This causes the CPU time spent on segment processing to grow linearly with the number of segments in the reassembly queue. An attacker who has the ability to send TCP traffic to a victim system can degrade the victim system's network performance and/or consume excessive CPU by exploiting the inefficiency of TCP reassembly handling, with relatively small bandwidth cost.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score : 5.3CVSS Score : 5.0
Exploit Score: 3.9Exploit Score: 10.0
Impact Score: 1.4Impact Score: 2.9
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: NETWORKAccess Vector: NETWORK
Attack Complexity: LOWAccess Complexity: LOW
Privileges Required: NONEAuthentication: NONE
User Interaction: NONEConfidentiality: NONE
Scope: UNCHANGEDIntegrity: NONE
Confidentiality: NONEAvailability: PARTIAL
Integrity: NONE 
Availability: LOW 
  
Reference:
SECTRACK-1041425
BID-105058
FreeBSD-SA-18:08
https://security.netapp.com/advisory/ntap-20180815-0002/
https://www.oracle.com/technetwork/security-advisory/cpujan2019-5072801.html

CPE    7
cpe:/o:freebsd:freebsd:11.1:p4
cpe:/o:freebsd:freebsd:11.1:p6
cpe:/o:freebsd:freebsd:11.1:p5
cpe:/o:freebsd:freebsd:11.1:p2
...
CWE    1
CWE-400
OVAL    2
oval:org.secpod.oval:def:2001067
oval:org.secpod.oval:def:1100521

© SecPod Technologies