REDHAT-BUG-530863: Medium severity cisco sourcefire snort vulnerability
Snort upstream has released 2.8.5.1 version, addressing one security issue (from upstream release notes):
Fixed potential segfault when printing IPv6 packets using the -v option. Thanks to Laurent Gaffie for reporting this issue.
References: ----------- http://vrt-sourcefire.blogspot.com/2009/10/snort-2851-release.html http://www.snort.org/downloads http://secunia.com/advisories/37135/
PoC: http://seclists.org/fulldisclosure/2009/Oct/299 ----
Credit: ------- Laurent Gaffié
CVE Request: ------------ http://www.openwall.com/lists/oss-security/2009/10/25/3
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-530863?
The severity of REDHAT-BUG-530863 is classified as a moderate security issue due to a potential segmentation fault.
How do I fix REDHAT-BUG-530863?
To fix REDHAT-BUG-530863, upgrade to Snort version 2.8.5.1 or later.
What is the impact of REDHAT-BUG-530863?
The impact of REDHAT-BUG-530863 could lead to application crashes when printing IPv6 packets.
Who reported the issue in REDHAT-BUG-530863?
Laurent Gaffie reported the issue associated with REDHAT-BUG-530863.
Which software is affected by REDHAT-BUG-530863?
The affected software for REDHAT-BUG-530863 is Cisco Sourcefire Snort.