Memory leak in FreeBSD 4.5 and earlier allows remote attackers to cause a denial of service (memory exhaustion) via ICMP echo packets that trigger a bug in ip_output() in which the reference count for a routing table entry is not decremented, which prevents the entry from being removed.
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
Link | Tags |
---|---|
http://www.iss.net/security_center/static/8893.php | vdb entry broken link |
http://www.osvdb.org/5232 | vdb entry broken link |
http://www.securityfocus.com/bid/4539 | patch vendor advisory vdb entry third party advisory broken link |
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-02:21.tcpip.asc | broken link patch vendor advisory |