CVE-2018-10244: Integer Overflow
Published Apr 4, 2019
·Updated
Suricata version 4.0.4 incorrectly handles the parsing of an EtherNet/IP PDU. A malformed PDU can cause the parsing code to read beyond the allocated data because DecodeENIPPDU in app-layer-enip-commmon.c has an integer overflow during a length check.
Affected Software
2 affected components
OISF Suricata=4.0.4
Suricata-ids Suricata=4.0.4
Event History
Apr 4, 2019
CVE Published
via MITRE·03:04 PM
Data Sourced
via MITRE·03:04 PM
Description
Frequently Asked Questions
1
What is CVE-2018-10244?
CVE-2018-10244 is a vulnerability in Suricata version 4.0.4 that allows a malformed EtherNet/IP PDU to cause an integer overflow during a length check.
2
How does CVE-2018-10244 affect Suricata?
CVE-2018-10244 affects Suricata version 4.0.4, causing it to incorrectly handle the parsing of an EtherNet/IP PDU.
3
What is the severity of CVE-2018-10244?
The severity of CVE-2018-10244 is critical with a CVSS score of 9.8.
4
How can CVE-2018-10244 be exploited?
CVE-2018-10244 can be exploited by sending a malformed EtherNet/IP PDU to Suricata version 4.0.4.
5
How can I fix CVE-2018-10244?
To fix CVE-2018-10244, upgrade Suricata to version 4.0.5 or later.