VendorsSourcefiresnortall versions
Vulnerabilities

Sourcefire Snort

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2003-0209
Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence numbers in packets, which enable a heap-based buffer overflow.
Published 2003-04-16 · Modified
10.01 PoCEPSS 0.386
CVE-2004-2652
The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, allows remote attackers to cause a denial of service (crash) via packets with invalid TCP/IP options, which trigger a null dereference.
Published 2005-12-18 · Modified
7.82 PoCEPSS 0.112
CVE-2005-3252
Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP packet.
Published 2005-10-18 · Modified
7.55 PoCEPSS 0.836
CVE-2006-2769
The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via a carriage return (\r) after the URL and before the HTTP declaration.
Published 2006-06-02 · Modified
5.01 PoCEPSS 0.108
CVE-2006-0839
The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths.
Published 2006-02-22 · Modified
5.0EPSS 0.014