Vulnerability index

Browse CVEs

7 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Suricata CRITICAL 9.8
CVE-2019-16411

An issue was discovered in Suricata 4.1.4. By sending multiple IPv4 packets that have invalid IPv4Options, the function IPV4OptValidateTimestamp in d…

Mitigation only
Fix from $2,300 2019-09-24
Suricata CRITICAL 9.1
CVE-2019-15699

An issue was discovered in app-layer-ssl.c in Suricata 4.1.4. Upon receiving a corrupted SSLv3 (TLS 1.2) packet, the parser function TLSDecodeHSHello…

Mitigation only
Fix from $2,300 2019-09-24
Suricata CRITICAL 9.1
CVE-2019-16410

An issue was discovered in Suricata 4.1.4. By sending multiple fragmented IPv4 packets, the function Defrag4Reassemble in defrag.c tries to access a …

Mitigation only
Fix from $2,300 2019-09-24
Suricata HIGH 7.5
CVE-2019-10054

An issue was discovered in Suricata 4.1.3. The function process_reply_record_v3 lacks a check for the length of reply.data. It causes an invalid memo…

No fix yet
Fix from $1,950 2019-08-28
Suricata HIGH 7.5
CVE-2019-10055

An issue was discovered in Suricata 4.1.3. The function ftp_pasv_response lacks a check for the length of part1 and part2, leading to a crash within …

No fix yet
Fix from $1,950 2019-08-28
Suricata HIGH 7.5
CVE-2019-10056

An issue was discovered in Suricata 4.1.3. The code mishandles the case of sending a network packet with the right type, such that the function Decod…

No fix yet
Fix from $1,950 2019-08-28
Suricata HIGH 7.5
CVE-2019-10052

An issue was discovered in Suricata 4.1.3. If the network packet does not have the right length, the parser tries to access a part of a DHCP packet. …

No fix yet
Fix from $1,950 2019-08-28