Back to Database
Status published
High
CVE-2017-1081
In FreeBSD before 11.0-STABLE, 11.0-RELEASE-p10, 10.3-STABLE, and 10.3-RELEASE-p19, ipfilter using...
Vulnerability Description
In FreeBSD before 11.0-STABLE, 11.0-RELEASE-p10, 10.3-STABLE, and 10.3-RELEASE-p19, ipfilter using "keep state" or "keep frags" options can cause a kernel panic when fed specially crafted packet fragments due to incorrect memory handling.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2017-1081
Credits & Attribution
No credits recorded in the NVD database.
References
More from FreeBSD
View All →CVE-2025-24934
SO_REUSEPORT_LB breaks connect(2) for UDP sockets
Unknown
0
CVE-2025-15576
Jail chroot escape via fd exchange with a different jail
Unknown
0
CVE-2025-15547
Jail escape by a privileged user via nullfs
Unknown
0
CVE-2025-14769
ipfw denial of service
Unknown
0
CVE-2025-14558
Remote code execution via ND6 Router Advertisements
Unknown
0
Affected Vendor
FreeBSD
View all reports →Affected Software
FreeBSD
Vulnerable Versions:
prior to 11.0-RELEASE-p10 and 10.3-RELEASE-p19
Timeline
Official Publish:
April 10th, 2018
Last Modified:
September 16th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H