In OpenBSD 7.4 before errata 009, a race condition between pf(4)'s processing of packets and expiration of packet states may cause a kernel panic.
[
{
"source": "https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7",
"id": "CVE-2023-52556-05fbace3",
"deprecated": false,
"target": {
"function": "pf_tcp_track_sloppy",
"file": "sys/net/pf.c"
},
"signature_version": "v1",
"digest": {
"length": 2105.0,
"function_hash": "7284149471710954979329840820774830506"
},
"signature_type": "Function"
},
{
"source": "https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7",
"id": "CVE-2023-52556-2bd285e2",
"deprecated": false,
"target": {
"function": "pf_test_state",
"file": "sys/net/pf.c"
},
"signature_version": "v1",
"digest": {
"length": 3577.0,
"function_hash": "265589122248445872290182510727894348158"
},
"signature_type": "Function"
},
{
"source": "https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7",
"id": "CVE-2023-52556-32409f44",
"deprecated": false,
"target": {
"function": "pf_src_connlimit",
"file": "sys/net/pf.c"
},
"signature_version": "v1",
"digest": {
"length": 2279.0,
"function_hash": "29309459414556529863656470007831907922"
},
"signature_type": "Function"
},
{
"source": "https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7",
"id": "CVE-2023-52556-4e5f8a24",
"deprecated": false,
"target": {
"function": "pf_remove_state",
"file": "sys/net/pf.c"
},
"signature_version": "v1",
"digest": {
"length": 975.0,
"function_hash": "145963397689684659871557199914420097568"
},
"signature_type": "Function"
},
{
"source": "https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7",
"id": "CVE-2023-52556-516d82f6",
"deprecated": false,
"target": {
"file": "sys/net/pf.c"
},
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"257974054898605806875466552617102453518",
"255517279624593648594452560329181569233",
"189182137000394626507318203738844585202",
"328553214887602615300620321262643669556",
"151805521319149286434506073606045718212",
"253058399753664189915938056797850303995",
"164220127314156400984964485146283618913",
"252078787701511498306089318612276229049",
"8936955144203865392869152642859721998",
"247156071156259996306979603280306016862",
"311093952868128054264614259320328674240",
"196843935594074023576948660270021354565",
"144672906018528776893562514958114818134",
"128926595547928560337355726099493131403",
"24741974117413926006852786092128131422",
"12930189400851416320676124244784344657",
"227384085071554772076888252604835348849",
"289321841187908743177761451485357863622",
"254112359347359435020614436031709530296",
"217923882991589042690075628197655040386",
"2382824435884985283134541020840816310",
"310359912628086502925387958861403271967",
"235177802197669482336877531300294764519",
"127712909838639352928540526987586627083",
"137709433487461815576426034469436834981",
"327628911636427192144446628718392318390",
"286673118788627144558320338355968795790",
"54508917961357590678745560928049464207",
"75545233249840524732815740394247969256",
"208405938762050881696275705930027143861",
"216166934900432816662166670402905629401",
"257281543370969095519838224221632414531",
"159588171178394942729226607428207378585",
"192299759080421072559155920029306605271",
"265804041215295990312239402320721497383",
"292832885082925430474301096990152629761",
"313935040353030926307560447759729756029",
"235177802197669482336877531300294764519",
"127712909838639352928540526987586627083",
"137709433487461815576426034469436834981",
"327628911636427192144446628718392318390",
"286673118788627144558320338355968795790",
"54508917961357590678745560928049464207",
"75545233249840524732815740394247969256",
"208405938762050881696275705930027143861",
"216166934900432816662166670402905629401",
"257281543370969095519838224221632414531",
"159588171178394942729226607428207378585",
"192299759080421072559155920029306605271",
"174632350405682923022759815538895251658",
"52536847296677665767966984536412722163",
"16450919720473820326510682647081435161",
"30691064109978250922203909613680721692",
"337107454340113525083143777285601674301",
"15177564933993542195695977336825859251",
"297814989850077019165378673012622644733",
"116825674433030740805455634514822921273",
"218885096143696817796386339839975919535",
"214966542822825878493740806976999735263",
"202960764538620394244773510761894403378",
"324484858496471869835726583509227789688",
"60989911621819971016987597681731763861",
"200583752591009497536584689688057505373",
"47034960266912089176573395521273890293",
"308548798332061427664129642071684033842",
"206320737725958956992163948608476807685",
"255377370092962476613607723977279837860",
"205003201831943177400813549765749921419",
"139856768934721639114811399881870358132",
"150941858955121571300461580953164549362",
"334551794047866587690574324320818490053",
"253774127665057943149347339351620826875"
]
},
"signature_type": "Line"
},
{
"source": "https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7",
"id": "CVE-2023-52556-78c01565",
"deprecated": false,
"target": {
"function": "pf_tcp_track_full",
"file": "sys/net/pf.c"
},
"signature_version": "v1",
"digest": {
"length": 7491.0,
"function_hash": "54952085761564230646408771626007393106"
},
"signature_type": "Function"
},
{
"source": "https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7",
"id": "CVE-2023-52556-efa11886",
"deprecated": false,
"target": {
"function": "pf_test_state_icmp",
"file": "sys/net/pf.c"
},
"signature_version": "v1",
"digest": {
"length": 20226.0,
"function_hash": "66583716391296379098506073338032145383"
},
"signature_type": "Function"
},
{
"source": "https://github.com/openbsd/src/commit/9d9f4dc6c833cb79d13f836581e3a781d06842e7",
"id": "CVE-2023-52556-f29088e8",
"deprecated": false,
"target": {
"function": "pf_remove_divert_state",
"file": "sys/net/pf.c"
},
"signature_version": "v1",
"digest": {
"length": 800.0,
"function_hash": "231256848604047641217769689728321277070"
},
"signature_type": "Function"
}
]