NetBSD 3.0, 3.1, and 4.0, when a pppoe instance exists, does not properly check the length of a PPPoE packet tag, which allows remote attackers to cause a denial of service (system crash) via a crafted PPPoE packet.Referenceshttp://www.securitytracker.com/id?1020749http://support.apple.com/kb/HT3467http://www.securityfocus.com/bid/30838http://secunia.com/advisories/31597https://exchange.xforce.ibmcloud.com/vulnerabilities/44679ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2008-010.txt.aschttp://www.vupen.com/english/advisories/2009/0633