CVE-2023-52556
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/03/2024
Last modified:
10/10/2025
Description
In OpenBSD 7.4 before errata 009, a race condition between pf(4)&#39;s processing of packets and expiration of packet states may cause a kernel panic.<br />
Impact
Base Score 3.x
6.20
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:openbsd:openbsd:*:*:*:*:*:*:*:* | 7.4 (excluding) | |
| cpe:2.3:o:openbsd:openbsd:7.4:-:*:*:*:*:*:* | ||
| cpe:2.3:o:openbsd:openbsd:7.4:errata_001:*:*:*:*:*:* | ||
| cpe:2.3:o:openbsd:openbsd:7.4:errata_002:*:*:*:*:*:* | ||
| cpe:2.3:o:openbsd:openbsd:7.4:errata_003:*:*:*:*:*:* | ||
| cpe:2.3:o:openbsd:openbsd:7.4:errata_004:*:*:*:*:*:* | ||
| cpe:2.3:o:openbsd:openbsd:7.4:errata_005:*:*:*:*:*:* | ||
| cpe:2.3:o:openbsd:openbsd:7.4:errata_006:*:*:*:*:*:* | ||
| cpe:2.3:o:openbsd:openbsd:7.4:errata_007:*:*:*:*:*:* | ||
| cpe:2.3:o:openbsd:openbsd:7.4:errata_008:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://ftp.openbsd.org/pub/OpenBSD/patches/7.4/common/009_pf.patch.sig
- https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7
- https://ftp.openbsd.org/pub/OpenBSD/patches/7.4/common/009_pf.patch.sig
- https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7



