Home→Descriptions→SA50189
| Secunia ID | |
| CVE-ID | |
| Release Date |
10 Aug 2012 |
| Last Change |
25 Oct 2012 |
| Criticality | |
| Solution Status |
Unpatched |
| Where | |
| Impact |
DoS (Denial of Service)This includes vulnerabilities ranging from excessive resource consumption (e.g. causing a system to use a lot of memory) to crashing an application or an entire system. |
| Description |
IOActive has discovered a vulnerability in FreeBSD, which can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to a NULL pointer dereference error when handling ASCONF chunks and can be exploited to cause a kernel panic via a specially crafted verification tag sent in a SCTP packet. The vulnerability is confirmed in version 8.1. Other versions may also be affected. |
| Solution |
No official solution is currently available. |
| Reported by |
Shaun Colley, IOActive. |
| Original Advisory |