In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p7, 10.4-STABLE, 10.4-RELEASE-p7, and 10.3-RELEASE-p28, the kernel does not properly validate IPsec packets coming from a trusted host. Additionally, a use-after-free vulnerability exists in the IPsec AH handling code. This issue could cause a system crash or other unpredictable results.
2018-03-09T15:29:00.313
2024-11-21T04:11:25.097
Modified
CVSSv3.0: 9.8 (CRITICAL)
AV:N/AC:L/Au:N/C:P/I:P/A:C
10.0
8.5
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | freebsd | freebsd | < 11.1 | Yes |
Operating System | freebsd | freebsd | 10.3 | Yes |
Operating System | freebsd | freebsd | 10.4 | Yes |
Operating System | freebsd | freebsd | 10.4 | Yes |