CVE-2006-0381

Publication date 25 January 2006

Last updated 17 July 2025


Ubuntu priority

Description

A logic error in the IP fragment cache functionality in pf in FreeBSD 5.3, 5.4, and 6.0, and OpenBSD, when a 'scrub fragment crop' or 'scrub fragment drop-ovl' rule is being used, allows remote attackers to cause a denial of service (crash) via crafted packets that cause a packet fragment to be inserted twice.

Status

Package Ubuntu Release Status
kfreebsd-5 9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid
Fixed 5.4-17
8.04 LTS hardy
Fixed 5.4-17
7.10 gutsy
Fixed 5.4-17
7.04 feisty
Fixed 5.4-17
6.10 edgy
Fixed 5.4-17
6.06 LTS dapper Ignored end of life


Access our resources on patching vulnerabilities