Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Date: Sun, 25 Oct 2009 19:32:36 +0100
From: Jan Lieskovsky <jlieskov@...hat.com>
To: "Steven M. Christey" <coley@...us.mitre.org>
CC: oss-security <oss-security@...ts.openwall.com>
Subject: CVE Request -- Snort - 2.8.5.1

Hello Steve, vendors,

   Snort upstream has released 2.8.5.1 version fixing one security issue:

DoS (crash) while printing specially-crafted IPv6 packet using the -v option

References:
-----------
http://dl.snort.org/snort-current/release_notes_2851.txt
http://vrt-sourcefire.blogspot.com/2009/10/snort-2851-release.html
http://secunia.com/advisories/37135/

PoC:  http://seclists.org/fulldisclosure/2009/Oct/299
----

Credit:  Laurent Gaffié
-------

Could you allocate a new CVE identifier?

Thanks && Regards, Jan.
--
Jan iankko Lieskovsky / Red Hat Security Response Team

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ