preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by using a different TTL for each fragment.
References
Configurations
Information
Published : 2008-05-22 06:09
Updated : 2017-08-07 18:30
NVD link : CVE-2008-1804
Mitre link : CVE-2008-1804
JSON object : View
CWE
Products Affected
snort
- snort