CVE-2023-3107
published 2023-08-01CVE-2023-3107: A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field. This allows…
PriorityP335high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
0.54%
41.8th percentile
A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field. This allows an attacker to trigger a kernel panic, resulting in a denial of service.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| freebsd | freebsd | — | — |
| freebsd | freebsd | — | — |
| freebsd | freebsd | — | — |
| freebsd | freebsd | >= 12.4-RELEASE < 12.4-RELEASE-p4 | 12.4-RELEASE-p4 |
| freebsd | freebsd | >= 13.1-RELEASE < 13.1-RELEASE-p9 | 13.1-RELEASE-p9 |
| freebsd | freebsd | >= 13.2-RELEASE < 13.2-RELEASE-p2 | 13.2-RELEASE-p2 |
| netapp | clustered_data_ontap | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-cx46-mm2w-4mwv: A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field
ghsa_unreviewed·2023-08-02
CVE-2023-3107 [HIGH] CWE-190 GHSA-cx46-mm2w-4mwv: A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field
A set of carefully crafted ipv6 packets can trigger an integer overflow in the calculation of a fragment reassembled packet's payload length field. This allows an attacker to trigger a kernel panic, resulting in a denial of service.
BSD
FreeBSD-SA-23:06.ipv6: Remote denial of service in IPv6 fragment reassembly
bsd_advisories·2023-08-01·CVSS 7.5
CVE-2023-3107 [HIGH] FreeBSD-SA-23:06.ipv6: Remote denial of service in IPv6 fragment reassembly
FreeBSD-SA-23:06.ipv6 Security Advisory
The FreeBSD Project
Topic: Remote denial of service in IPv6 fragment reassembly
Category: core
Module: ipv6
Announced: 2023-08-01
Credits: Zweig of Kunlun Lab
Affects: All supported versions of FreeBSD
Corrected: 2023-08-01 19:49:07 UTC (stable/13, 13.2-STABLE)
2023-08-01 19:51:27 UTC (releng/13.2, 13.2-RELEASE-p2)
2023-08-01 19:49:52 UTC (releng/13.1, 13.1-RELEASE-p9)
2023-08-01 20:05:08 UTC (stable/12, 12.4-STABLE)
2023-08-01 20:05:42 UTC (releng/12.4, 12.4-RELEASE-p4)
CVE Name: CVE-2023-3107
For general information regarding FreeBSD Security Advisories,
including descriptions of the fields above, security branches, and the
following sections, please visit .
I. Background
IPv6 packets may be fragmented in order to accommodate the maximum
trans
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-08-01
Published