HomeFreeBSD

security/vuxml: Mark zeek < 7.0.5 as vulnerable as per:

Description

security/vuxml: Mark zeek < 7.0.5 as vulnerable as per:

https://github.com/zeek/zeek/releases/tag/v7.0.5

This release fixes the following potential DoS vulnerability:

  • Large QUIC packets can cause Zeek to overflow memory and potentially crash. Due to the possibility of receiving these packets from remote hosts, this is a DoS risk.

Reported by: Tim Wojtulewicz

Details

Provenance
leresAuthored on Dec 16 2024, 7:15 PM
Parents
R11:129d223ad6cb: dns/utdns: Use upstream release archive
Branches
Unknown
Tags
Unknown