OpenBSD WireGuard Traffic Handling Vulnerability Leading to Kernel Crash

Vulnerability

A vulnerability exists in OpenBSD versions 7.6 prior to errata 006 and 7.5 prior to errata 015, where traffic sent over the WireGuard interface (wg(4)) could cause a kernel crash. This issue arises from improper handling of network packet buffers, which can lead to a system crash under certain conditions.

Impact

Exploitation of this vulnerability causes a kernel crash, leading to a system outage.

Remediation

Users can apply the OpenBSD 7.5 errata 015 or OpenBSD 7.6 errata 006, both released on January 10, 2025. Instructions for applying this patch are available on the OpenBSD website.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
2.5
exploitability
5.5
remediation
7.7
relevance
0.0
threat
3.2
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.