CVE-2018-6925: Freebsd

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In FreeBSD before 11.2-STABLE(r338986), 11.2-RELEASE-p4, 11.1-RELEASE-p15, 10.4-STABLE(r338985), and 10.4-RELEASE-p13, due to improper maintenance of IPv6 protocol control block flags through various failure paths, an unprivileged authenticated local user may be able to cause a NULL pointer dereference causing the kernel to crash.

Affected products

  • Freebsd Freebsd: before 11.2 (fixed in 11.2); version 10.4 only; version 11.1 only; version 11.2 only

Published 2018-09-28. Last modified 2026-06-17.