Back to search
CVE-2019-5599
Published: Jul 2, 2019
Modified: Aug 4, 2024
PUBLISHED
Description
In FreeBSD 12.0-STABLE before r349197 and 12.0-RELEASE before 12.0-RELEASE-p6, a bug in the non-default RACK TCP stack can allow an attacker to cause several linked lists to grow unbounded and cause an expensive list traversal on every packet being processed, leading to resource exhaustion and a denial of service.
| Vendor | Product | Versions |
|---|---|---|
n/a | FreeBSD | affected FreeBSD 12.0 before 12.0-RELEASE-p6 |
References
[oss-security] 20190617 Linux and FreeBSD Kernel: Multiple TCP-based remote denial of service issues
mailing-list
x_refsource_MLIST
FreeBSD-SA-19:08
vendor-advisory
x_refsource_FREEBSD
VU#905115
third-party-advisory
x_refsource_CERT-VN
20190624 FreeBSD Security Advisory FreeBSD-SA-19:08.rack
mailing-list
x_refsource_BUGTRAQ
https://support.f5.com/csp/article/K75521003
x_refsource_MISC
https://security.netapp.com/advisory/ntap-20190625-0004/
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now