Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Snort HIGH 8.8
CVE-2016-1417

Untrusted search path vulnerability in Snort 2.9.7.0-WIN32 allows remote attackers to execute arbitrary code and conduct DLL hijacking attacks via a …

No fix yet
Fix from $1,950 2017-01-23
Snort MEDIUM 6.8
CVE-2008-1804

preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows …

Fix: after 2.8.0
Fix from $1,600 2008-05-22
Snort HIGH 7.1
CVE-2007-1398EPSS 6%

The frag3 preprocessor in Snort 2.6.1.1, 2.6.1.2, and 2.7.0 beta, when configured for inline use on Linux without the ip_conntrack module loaded, all…

No fix yet
Fix from $1,950 2007-03-10
Snort HIGH 10.0
CVE-2006-5276EPSS 79%

Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remot…

Fix: after 2.6.1.2
Fix from $1,950 2007-02-20
Snort HIGH 7.8
CVE-2007-0251

Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of certain memory locat…

Mitigation only
Fix from $1,950 2007-01-16
Snort MEDIUM 5.0
CVE-2006-6931

Algorithmic complexity vulnerability in Snort before 2.6.1, during predicate evaluation in rule matching for certain rules, allows remote attackers t…

Fix: after 2.6.2
Fix from $1,600 2007-01-16
Snort HIGH 10.0
CVE-2003-0033EPSS 12%

Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via fragmented RPC pac…

Patch available
Fix from $1,950 2003-03-07
Snort MEDIUM 5.0
CVE-2001-1558

Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash).

Patch available
Fix from $1,600 2001-12-31
Snort MEDIUM 5.0
CVE-2000-1226

Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote attacker…

Patch available
Fix from $1,600 2000-12-31