Ghostwire

CVE-2026-7164: Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a...

MEDIUM CVSS 0.0 Exploit Available

Published: April 30, 2026 | Last Modified: April 30, 2026

Description

Incorrect packet validation allowed unbounded recursion parsing SCTP chunk parameters. This can eventually result in a stack overflow and panic. Remote attackers can craft packets which cause affected systems to panic. This affects any system where pf is configured to process traffic, independent of the configured ruleset.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (1 articles)

References