CVE-2000-1226: Medium severity pfsense snort package vulnerability
Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote attackers to cause a denial of service (crash) by sending non-IP protocols that Snort does not know about, as demonstrated by an nmap protocol scan.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2000-1226?
CVE-2000-1226 is classified as a denial of service vulnerability that can crash Snort 1.6.
How do I fix CVE-2000-1226?
To mitigate CVE-2000-1226, upgrade to a later version of Snort that addresses this vulnerability.
Which versions of Snort are affected by CVE-2000-1226?
CVE-2000-1226 affects Snort versions prior to 1.6 when running in specific logging modes.
What type of attack can exploit CVE-2000-1226?
CVE-2000-1226 can be exploited through the sending of non-IP protocols to cause a denial of service.
How can I detect if my system is affected by CVE-2000-1226?
You can detect if your system is affected by CVE-2000-1226 by checking for the presence of Snort version 1.6 and its logging configurations.