The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths.
References
Configurations
History
21 Nov 2024, 00:07
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/18959 - | |
References | () http://www.securityfocus.com/archive/1/425290/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/16705 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/24811 - |
Information
Published : 2006-02-22 02:02
Updated : 2024-11-21 00:07
NVD link : CVE-2006-0839
Mitre link : CVE-2006-0839
CVE.ORG link : CVE-2006-0839
JSON object : View
Products Affected
sourcefire
- snort
CWE