Index: security/vuxml/vuln.xml =================================================================== --- security/vuxml/vuln.xml +++ security/vuxml/vuln.xml @@ -58,6 +58,31 @@ * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + bro -- integer overflow allows remote DOS + + + bro + 2.5.3 + + + + +

Philippe Antoine of Catena cyber:

+
+

This is a security release that fixes an integer overflow in code generated by binpac. This issue can be used by remote attackers to crash Bro (i.e. a DoS attack). There also is a possibility this can be exploited in other ways. (CVE pending.)

+
+ +
+ + http://blog.bro.org/2018/02/bro-253-released-security-update.html + + + 2018-02-14 + 2018-02-16 + +
+ bro -- out of bounds write allows remote DOS