Description
Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic. Remote attackers can craft packets which cause affected systems to panic. This affects any system where pf is configured to process traffic, independent of the configured ruleset.
Problem types
CWE-674: Uncontrolled Recursion
CWE-791: Incomplete Filtering of Special Elements
Product status
15.0-RELEASE (release) before p7
14.4-RELEASE (release) before p3
14.3-RELEASE (release) before p12
13.5-RELEASE (release) before p13
Credits
Igor Gabriel Sousa e Souza
References
security.freebsd.org/advisories/FreeBSD-SA-26:14.pf.asc