CVE-2017-7177: High severity Openinfosecfoundation Suricata vulnerability
Published Mar 18, 2017
·Updated
Suricata before 3.2.1 has an IPv4 defragmentation evasion issue caused by lack of a check for the IP protocol during fragment matching.
Affected Software
1 affected component
Openinfosecfoundation Suricata<=3.2
Remediation
Patch Available
Event History
Mar 18, 2017
CVE Published
via MITRE·08:10 PM
Data Sourced
via MITRE·08:10 PM
Description
Data Sourced
via NVD·08:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-7177?
CVE-2017-7177 is classified as a medium severity vulnerability.
2
How do I fix CVE-2017-7177?
To mitigate CVE-2017-7177, upgrade Suricata to version 3.2.1 or later.
3
What is the main issue described in CVE-2017-7177?
CVE-2017-7177 involves an IPv4 defragmentation evasion issue due to a lack of check for the IP protocol during fragment matching.
4
Which versions of Suricata are affected by CVE-2017-7177?
Suricata versions prior to 3.2.1 are affected by CVE-2017-7177.
5
Can CVE-2017-7177 lead to security exploitation?
Yes, CVE-2017-7177 can potentially allow attackers to evade detection mechanisms.