Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2016-10728

Опубликовано: 23 июл. 2018
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

An issue was discovered in Suricata before 3.1.2. If an ICMPv4 error packet is received as the first packet on a flow in the to_client direction, it confuses the rule grouping lookup logic. The toclient inspection will then continue with the wrong rule group. This can lead to missed detection.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:suricata-ids:suricata:*:*:*:*:*:*:*:*
Версия до 3.1.2 (исключая)

EPSS

Процентиль: 60%
0.00391
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 7 лет назад

An issue was discovered in Suricata before 3.1.2. If an ICMPv4 error packet is received as the first packet on a flow in the to_client direction, it confuses the rule grouping lookup logic. The toclient inspection will then continue with the wrong rule group. This can lead to missed detection.

CVSS3: 5.3
debian
больше 7 лет назад

An issue was discovered in Suricata before 3.1.2. If an ICMPv4 error p ...

CVSS3: 5.3
github
больше 3 лет назад

An issue was discovered in Suricata before 3.1.2. If an ICMPv4 error packet is received as the first packet on a flow in the to_client direction, it confuses the rule grouping lookup logic. The toclient inspection will then continue with the wrong rule group. This can lead to missed detection.

EPSS

Процентиль: 60%
0.00391
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-20