The IP fragment reassembly algorithm in some BSD-derived TCP/IP implementations incorrectly reassembles fragments containing invalid IP options. This vulnerability could allow an attacker to remotely crash or disrupt service on the target system by sending carefully crafted packets that contain these invalid options. Vulnerable systems include BSDI, FreeBSD, and OpenBSD.
This can not apply as Astaro is based on Linux, not *BSD, can it?