[Bug 193809] New: Snort URIContent Rules Detection Evasion Vulnerability

bugzilla at redhat.com bugzilla at redhat.com
Thu Jun 1 19:04:17 UTC 2006


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.




https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=193809

           Summary: Snort URIContent Rules Detection Evasion Vulnerability
           Product: Fedora Extras
           Version: devel
          Platform: All
        OS/Version: Linux
            Status: NEW
          Severity: normal
          Priority: normal
         Component: snort
        AssignedTo: dennis at ausil.us
        ReportedBy: dennis at ausil.us
         QAContact: extras-qa at fedoraproject.org
                CC: extras-qa at fedoraproject.org,fedora-security-
                    list at redhat.com


Snort is reportedly prone to a vulnerability that may allow malicious packets 
to bypass detection. 

A successful attack can allow attackers to bypass intrusion detection and to 
carry out attacks against computers protected by Snort.

This vulnerability affects Snort 2.4.4. Other versions may be vulnerable as 
well.

there is no CVE yet

Demarc snort-2.4.4-demarc-patch.diff
 http://www.demarc.com/files/patch_20060531/snort-2.4.4-demarc-patch.diff

-- 
Configure bugmail: https://bugzilla.redhat.com/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.




More information about the Fedora-security-list mailing list