CVE-2017-6658

Cisco Sourcefire Snort 3.0 before build 233 has a Buffer Overread related to use of a decoder array. The size was off by one making it possible to read past the end of the array with an ether type of 0xFFFF. Increasing the array size solves this problem.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:sourcefire_snort:3.0:*:*:*:*:*:*:*

History

21 Nov 2024, 03:30

Type Values Removed Values Added
References () http://blog.snort.org/2017/05/snort-vulnerabilities-found.html - Third Party Advisory () http://blog.snort.org/2017/05/snort-vulnerabilities-found.html - Third Party Advisory
References () http://www.securitytracker.com/id/1038483 - () http://www.securitytracker.com/id/1038483 -

Information

Published : 2017-05-16 17:29

Updated : 2024-11-21 03:30


NVD link : CVE-2017-6658

Mitre link : CVE-2017-6658

CVE.ORG link : CVE-2017-6658


JSON object : View

Products Affected

cisco

  • sourcefire_snort
CWE
CWE-125

Out-of-bounds Read