PT-2018-14741 · Open Information Security Foundation+1 · Suricata+1

Victor Julien

·

Published

2018-11-05

·

Updated

2021-06-24

·

CVE-2018-18956

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Suricata versions 4.0.0 through 4.0.5
Description The issue allows remote attackers to cause a denial of service, resulting in a segfault and daemon crash, via crafted input to the SMTP parser. This has been exploited in the wild.
Recommendations For Suricata versions 4.0.0 through 4.0.5, update to version 4.0.6 or later to resolve the issue.

Fix

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-3551
ALT-PU-2021-2056
CVE-2018-18956

Affected Products

Alt Linux
Suricata