CVE-2009-3641
EPSS 33.2%發布日:2009/10/28修改日:2024/6/30
描述
Snort before 2.8.5.1, when the -v option is enabled, allows remote attackers to cause a denial of service (application crash) via a crafted IPv6 packet that uses the (1) TCP or (2) ICMP protocol.
受影響套件(1)
- Debian/snortfrom 0, < 2.8.5.2-1
參考連結(13)
- ADVISORYhttp://dl.snort.org/snort-current/release_notes_2851.txt
- ADVISORYhttp://secunia.com/advisories/37135
- ADVISORYhttps://security-tracker.debian.org/tracker/CVE-2009-3641
- ADVISORYhttp://www.vupen.com/english/advisories/2009/3014
- EXPLOIThttps://bugzilla.redhat.com/show_bug.cgi?id=530863
- PATCHhttp://seclists.org/fulldisclosure/2009/Oct/299
- PATCHhttp://vrt-sourcefire.blogspot.com/2009/10/snort-2851-release.html
- PATCHhttp://www.securityfocus.com/bid/36795
- WEBhttp://marc.info/?l=oss-security&m=125649553414700&w=2
- WEBhttp://securitytracker.com/id?1023076
- WEBhttps://exchange.xforce.ibmcloud.com/vulnerabilities/53912
- WEBhttp://www.openwall.com/lists/oss-security/2009/10/25/5
- WEBhttp://www.osvdb.org/59159