← Voltar à pesquisa de CVEs

CVE-2026-7164

pf

Descrição

Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic. Remote attackers can craft packets which cause affected systems to panic. This affects any system where pf is configured to process traffic, independent of the configured ruleset.

CVSS 7.5EPSS 0.432%Risco 0.78
Ver fonte
Publicação
2026-04-30 08:16:07
Versões afetadas
unknown
Tipo
Core software
Vetor
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H