First published: Sat Mar 18 2017(Updated: )
Suricata before 3.2.1 has an IPv4 defragmentation evasion issue caused by lack of a check for the IP protocol during fragment matching.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Suricata | <=3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-7177 is classified as a medium severity vulnerability.
To mitigate CVE-2017-7177, upgrade Suricata to version 3.2.1 or later.
CVE-2017-7177 involves an IPv4 defragmentation evasion issue due to a lack of check for the IP protocol during fragment matching.
Suricata versions prior to 3.2.1 are affected by CVE-2017-7177.
Yes, CVE-2017-7177 can potentially allow attackers to evade detection mechanisms.