DSA-3175-2 kfreebsd-9 -- kfreebsd-9ID: oval:org.secpod.oval:def:602100 | Date: (C)2015-05-28 (M)2021-09-12 |
Class: PATCH | Family: unix |
It was discovered that by sending crafted Router Advertisement packets, an attacker on the local network could lower the Current Hop Limit and cause the system to lose the ability to communicate with another IPv6 node on a different network. Additionally, it was discovered that the patch applied to kfreebsd-9 in DSA-3175-1 for CVE-2015-1414 was incomplete. For reference the original advisory text follows: Mateusz Kocielski and Marek Kroemeke discovered that an integer overflow in IGMP processing may result in denial of service through malformed IGMP packets.