CVE-2011-1547
Severity CVSS v4.0:
Pending analysis
Type:
CWE-119
Buffer Errors
Publication date:
09/05/2011
Last modified:
11/04/2025
Description
Multiple stack consumption vulnerabilities in the kernel in NetBSD 4.0, 5.0 before 5.0.3, and 5.1 before 5.1.1, when IPsec is enabled, allow remote attackers to cause a denial of service (memory corruption and panic) or possibly have unspecified other impact via a crafted (1) IPv4 or (2) IPv6 packet with nested IPComp headers.
Impact
Base Score 2.0
6.80
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:netbsd:netbsd:4.0:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netbsd:netbsd:5.0:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netbsd:netbsd:5.0.1:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netbsd:netbsd:5.0.2:*:*:*:*:*:*:* | ||
| cpe:2.3:o:netbsd:netbsd:5.1:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2011-004.txt.asc
- http://lists.grok.org.uk/pipermail/full-disclosure/2011-April/080031.html
- http://www.kb.cert.org/vuls/id/668220
- http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2011-004.txt.asc
- http://lists.grok.org.uk/pipermail/full-disclosure/2011-April/080031.html
- http://www.kb.cert.org/vuls/id/668220



