CVE-2009-0687
HIGH 7.8EPSS 9.5%
The pf_test_rule function in OpenBSD Packet Filter (PF), as used in OpenBSD 4.2 through 4.5, NetBSD 5.0 before RC3, MirOS 10 and earlier, and MidnightBSD 0.3-current allows remote attackers to cause a denial of service (panic) via crafted IP packets that trigger a NULL pointer dereference during translation, related to an IPv4 packet with an ICMPv6 payload.
- CVSS v2.0
- 7.8 HIGH
AV:N/AC:L/Au:N/C:N/I:N/A:C - EPSS
- 9.52% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2009-08-11
- Updated
- 2024-08-07
ExploitDB entries (3)
- https://www.exploit-db.com/exploits/8581
- https://www.exploit-db.com/exploits/8430
- https://www.exploit-db.com/exploits/8406