CVE-2006-2769
EPSS 22.8%Published: 6/2/2006Modified: 6/30/2024
Description
The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after the URL and before the HTTP declaration.
Affected packages (1)
- Debian/snortfrom 0, < 2.3.3-8
References (17)
- ADVISORYhttp://secunia.com/advisories/20413
- ADVISORYhttp://secunia.com/advisories/20766
- ADVISORYhttps://security-tracker.debian.org/tracker/CVE-2006-2769
- ADVISORYhttp://www.vupen.com/english/advisories/2006/2119
- PATCHhttp://securitytracker.com/id?1016191
- PATCHhttp://www.demarc.com/support/downloads/patch_20060531
- PATCHhttp://www.osvdb.org/25837
- PATCHhttp://www.securityfocus.com/bid/18200
- WEBhttp://lists.suse.com/archive/suse-security-announce/2006-Jun/0008.html
- WEBhttp://marc.info/?l=snort-devel&m=114909074311462&w=2
- WEBhttp://securityreason.com/securityalert/1018
- WEBhttps://exchange.xforce.ibmcloud.com/vulnerabilities/26855
- WEBhttp://www.securityfocus.com/archive/1/435600/100/0/threaded
- WEBhttp://www.securityfocus.com/archive/1/435734/100/0/threaded
- WEBhttp://www.securityfocus.com/archive/1/435797/100/0/threaded
- WEBhttp://www.securityfocus.com/archive/1/435872/100/0/threaded
- WEBhttp://www.snort.org/pub-bin/snortnews.cgi#431