PT-2019-11528 · Open Information Security Foundation+1 · Suricata+1

Alexey Vishnyakov

·

Published

2019-07-18

·

Updated

2021-06-24

·

CVE-2019-1010251

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Suricata versions prior to 4.1.2
Description: The issue allows an attacker to evade signature detection by sending a specially formed network packet, potentially bypassing DNS detection. This is achieved through a Denial of Service attack. The components affected are app-layer-detect-proto.c, decode.c, decode-teredo.c, and decode-ipv6.c. An attacker can trigger this issue by sending a specifically crafted network request.
Recommendations: For Suricata versions prior to 4.1.2, update to version 4.1.2 to resolve the issue. As a temporary workaround, consider restricting access to the affected components until the update can be applied.

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-3551
ALT-PU-2021-2056
CVE-2019-1010251

Affected Products

Alt Linux
Suricata