CVE-2002-0574

FreeBSD < 4.5 - Denial of Service via ICMP Echo Packet Memory Leak

Title source: llm
STIX 2.1

Description

Memory leak in FreeBSD 4.5 and earlier allows remote attackers to cause a denial of service (memory exhaustion) via ICMP echo packets that trigger a bug in ip_output() in which the reference count for a routing table entry is not decremented, which prevents the entry from being removed.

References (4)

Core 4
Core References
Broken Link vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/8893.php
Broken Link vdb-entry x_refsource_osvdb
http://www.osvdb.org/5232
Broken Link, Patch, Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4539
Broken Link, Patch, Vendor Advisory vendor-advisory x_refsource_freebsd
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:21.tcpip.asc

Scores

EPSS 0.0110
EPSS Percentile 78.3%

Details

CWE
CWE-401
Status published
Products (1)
freebsd/freebsd < 4.5
Published Jul 03, 2002
Tracked Since Feb 18, 2026