First published: Wed Aug 28 2019(Updated: )
An issue was discovered in Suricata 4.1.3. The function ftp_pasv_response lacks a check for the length of part1 and part2, leading to a crash within the ftp/mod.rs file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Suricata-ids Suricata | =4.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2019-10055.
The severity of CVE-2019-10055 is high (7.5).
The affected software is Suricata version 4.1.4.
To fix CVE-2019-10055, update Suricata to version 4.1.4 or later.
Yes, you can find additional information about CVE-2019-10055 at the following references: [link1](https://redmine.openinfosecfoundation.org/issues/2949), [link2](https://suricata-ids.org/2019/04/30/suricata-4-1-4-released/).