FreeBSD, NetBSD, and OpenBSD allow an attacker to cause a denial of service by creating a large number of socket pairs using the socketpair function, setting a large buffer size via setsockopt, then writing large buffers.
Software | From | Fixed in |
---|---|---|
netbsd / netbsd | 1.4 | 1.4.x |
freebsd / freebsd | 3.1 | 3.1.x |
netbsd / netbsd | 1.4.2 | 1.4.2.x |
netbsd / netbsd | 1.4.1 | 1.4.1.x |
openbsd / openbsd | 2.7 | 2.7.x |
freebsd / freebsd | 3.0 | 3.0.x |
freebsd / freebsd | 3.2 | 3.2.x |
freebsd / freebsd | 3.3 | 3.3.x |
freebsd / freebsd | 4.0 | 4.0.x |
freebsd / freebsd | 3.4 | 3.4.x |
freebsd / freebsd | 3.5 | 3.5.x |
freebsd / freebsd | 5.0-alpha | 5.0-alpha.x |
openbsd / openbsd | 2.6 | 2.6.x |
openbsd / openbsd | 2.5 | 2.5.x |