Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Randy Smith

Researcher fromUniversity of Wisconsin--Madison
#48796of 53,632
5Total CVSS
Vulnerabilities · 1
PT-2007-1211
5.0
2007-01-16
Cisco · Snort · CVE-2006-6931
Name of the Vulnerable Software and Affected Versions: Snort versions prior to 2.6.1 Description: The issue allows remote attackers to cause a denial of service, resulting in CPU consumption and detection outage, via crafted network traffic. This is achieved through a backtracking attack during predicate evaluation in rule matching for certain rules. Recommendations: For versions prior to 2.6.1, update to version 2.6.1 or later to resolve the issue.