CVE Database
/

CVE-2018-6916

Back to search

CVE-2018-6916

Published: Mar 9, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

In FreeBSD before 11.1-STABLE, 11.1-RELEASE-p7, 10.4-STABLE, 10.4-RELEASE-p7, and 10.3-RELEASE-p28, the kernel does not properly validate IPsec packets coming from a trusted host. Additionally, a use-after-free vulnerability exists in the IPsec AH handling code. This issue could cause a system crash or other unpredictable results.

VendorProductVersions

FreeBSD

FreeBSD

affected
All supported versions of FreeBSD

References

1040460
vdb-entry
x_refsource_SECTRACK
FreeBSD-SA-18:01
vendor-advisory
x_refsource_FREEBSD

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now