preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by using a different TTL for each fragment.
References
Configurations
History
No history.
Information
Published : 2008-05-22 13:09
Updated : 2024-02-28 11:21
NVD link : CVE-2008-1804
Mitre link : CVE-2008-1804
CVE.ORG link : CVE-2008-1804
JSON object : View
Products Affected
snort
- snort
CWE