CVE-2009-0687 - CVE House
Back to Database
Status published High CVE-2009-0687

The pf_test_rule function in OpenBSD Packet Filter (PF), as used...

Vulnerability Description

The pf_test_rule function in OpenBSD Packet Filter (PF), as used in OpenBSD 4.2 through 4.5, NetBSD 5.0 before RC3, MirOS 10 and earlier, and MidnightBSD 0.3-current allows remote attackers to cause a denial of service (panic) via crafted IP packets that trigger a NULL pointer dereference during translation, related to an IPv4 packet with an ICMPv6 payload.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2009-0687

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

midnightbsd

View all reports →

Affected Software

midnightbsd, miros, netbsd, openbsd
Vulnerable Versions:
0.3-current, 0, 5.0, 4.2, 4.3, 4.4, 4.5

Timeline

Official Publish: August 11th, 2009
Last Modified: August 7th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.