The bridge functionality in OpenBSD 3.4 and 3.5, when running a gateway configured as a bridging firewall with the link2 option for IPSec enabled, allows remote attackers to cause a denial of service (crash) via an ICMP echo (ping) packet.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/17129 | vdb entry |
http://openbsd.org/errata34.html | patch vendor advisory |
http://marc.info/?l=bugtraq&m=109345131508824&w=2 | mailing list |