6.8
CVSSv2

CVE-2011-1547

Published: 09/05/2011 Updated: 07/09/2011
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple stack consumption vulnerabilities in the kernel in NetBSD 4.0, 5.0 prior to 5.0.3, and 5.1 prior to 5.1.1, when IPsec is enabled, allow remote malicious users to cause a denial of service (memory corruption and panic) or possibly have unspecified other impact via a crafted (1) IPv4 or (2) IPv6 packet with nested IPComp headers.

Vulnerable Product Search on Vulmon Subscribe to Product

netbsd netbsd 5.0

netbsd netbsd 5.0.1

netbsd netbsd 5.0.2

netbsd netbsd 5.1

netbsd netbsd 4.0

Exploits

// source: listsgrokorguk/pipermail/full-disclosure/2011-April/080031html BSD derived RFC3173 IPComp encapsulation will expand arbitrarily nested payload ------------------------------------------------------------------------------- Gruezi, this document describes CVE-2011-1547 RFC3173 ip payload compression, henceforth ipcomp, is a ...