#VU80514 Security features bypass in FreeBSD - CVE-2023-4809
Published: September 7, 2023
FreeBSD
FreeBSD Foundation
Description
The vulnerability allows a remote attacker to bypass implemented firewall rules.
The vulnerability exists due to improper handling of multiple IPv6 fragment headers in pf implementation with "scrub fragment reassemble" rule. A remote attacker can send specially crafted IPv6 packets to the system and bypass implemented filtration rules.