Vulnerabilities > Sourcefire > Snort > 2.4.3

DATE CVE VULNERABILITY TITLE RISK
2006-06-02 CVE-2006-2769 Permissions, Privileges, and Access Controls vulnerability in Sourcefire Snort
The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after the URL and before the HTTP declaration.
network
low complexity
sourcefire CWE-264
5.0
2006-02-22 CVE-2006-0839 Unspecified vulnerability in Sourcefire Snort 2.4.3
The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths.
network
low complexity
sourcefire
5.0