Vulnerabilities > CVE-2004-2652 - Unspecified vulnerability in Sourcefire Snort

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
sourcefire
exploit available

Summary

The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, allows remote attackers to cause a denial of service (crash) via packets with invalid TCP/IP options, which trigger a null dereference.

Vulnerable Configurations

Part Description Count
Application
Sourcefire
4

Exploit-Db

descriptionSnort 2.1/2.2 DecodeTCPOptions Remote Denial Of Service Vulnerability (1). CVE-2004-2652. Dos exploit for linux platform
idEDB-ID:25046
last seen2016-02-03
modified2004-12-22
published2004-12-22
reporterMarcin Zgorecki
sourcehttps://www.exploit-db.com/download/25046/
titleSnort 2.1/2.2 DecodeTCPOptions Remote Denial of Service Vulnerability 1