VYPR
Unrated severityNVD Advisory· Published Aug 11, 2009· Updated Apr 23, 2026

CVE-2009-0687

CVE-2009-0687

Description

The pf_test_rule function in OpenBSD Packet Filter (PF), as used in OpenBSD 4.2 through 4.5, NetBSD 5.0 before RC3, MirOS 10 and earlier, and MidnightBSD 0.3-current allows remote attackers to cause a denial of service (panic) via crafted IP packets that trigger a NULL pointer dereference during translation, related to an IPv4 packet with an ICMPv6 payload.

Affected products

7
  • cpe:2.3:o:midnightbsd:midnightbsd:0.3-current:*:*:*:*:*:*:*
  • cpe:2.3:o:mirbsd:miros:*:*:*:*:*:*:*:*
    Range: <=10
  • cpe:2.3:o:netbsd:netbsd:5.0:*:*:*:*:*:*:*
  • OpenBSD/OpenBSD4 versions
    cpe:2.3:o:openbsd:openbsd:4.2:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:openbsd:openbsd:4.2:*:*:*:*:*:*:*
    • cpe:2.3:o:openbsd:openbsd:4.3:*:*:*:*:*:*:*
    • cpe:2.3:o:openbsd:openbsd:4.4:*:*:*:*:*:*:*
    • cpe:2.3:o:openbsd:openbsd:4.5:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

12

News mentions

0

No linked articles in our index yet.