CVE-2001-0710

FreeBSD < 4.3 and NetBSD < 1.5 - Denial of Service via IP Fragment Flood

Title source: llm
STIX 2.1

Description

NetBSD 1.5 and earlier and FreeBSD 4.3 and earlier allows a remote attacker to cause a denial of service by sending a large number of IP fragments to the machine, exhausting the mbuf pool.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/6636
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/2799
Patch, Vendor Advisory vendor-advisory x_refsource_netbsd
ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2001-006.txt.asc
Exploit, Patch, Vendor Advisory vendor-advisory x_refsource_freebsd
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-01:52.fragment.asc

Scores

EPSS 0.0092
EPSS Percentile 76.2%

Details

Status published
Products (2)
freebsd/freebsd < 4.3
netbsd/netbsd < 1.5
Published Sep 20, 2001
Tracked Since Feb 18, 2026