First published: Tue Jan 16 2007(Updated: )
Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of certain memory locations via crafted GRE packets, which may cause corruption of log files or writing of sensitive information into log files.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Snort | =2.6.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0251 is considered to be of medium severity due to potential exploitation leading to exposure of sensitive information.
To fix CVE-2007-0251, you should upgrade Snort to a patched version that addresses the integer underflow vulnerability.
CVE-2007-0251 specifically affects Snort version 2.6.1.2.
Exploitation of CVE-2007-0251 can lead to corruption of log files and potential leakage of sensitive information.
Remote attackers can exploit CVE-2007-0251 by sending crafted GRE packets to a vulnerable Snort installation.