Vulnerability Details CVE-2015-1414
Integer overflow in FreeBSD before 8.4 p24, 9.x before 9.3 p10. 10.0 before p18, and 10.1 before p6 allows remote attackers to cause a denial of service (crash) via a crafted IGMP packet, which triggers an incorrect size calculation and allocation of insufficient memory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.017
EPSS Ranking 81.4%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2015-1414
-
cpe:2.3:a:netgate:pfsense:2.2.1
-
cpe:2.3:o:debian:debian_linux:7.0
-
cpe:2.3:o:freebsd:freebsd:10.0
-
cpe:2.3:o:freebsd:freebsd:10.1
-
cpe:2.3:o:freebsd:freebsd:8.4
-
cpe:2.3:o:freebsd:freebsd:9.0
-
cpe:2.3:o:freebsd:freebsd:9.1
-
cpe:2.3:o:freebsd:freebsd:9.2
-
cpe:2.3:o:freebsd:freebsd:9.3