HomeFreeBSD

security/vuxml: Mark zeek < 5.0.2 as vulnerable as per:

Description

security/vuxml: Mark zeek < 5.0.2 as vulnerable as per:

https://github.com/zeek/zeek/releases/tag/v5.0.2

The potential DoS vulnerabilities include:

  • Fix a possible overflow and crash in the ICMP analyzer when receiving a specially crafted packet
  • Fix a possible overflow and crash in the IRC analyzer when receiving a specially crafted packet
  • Fix a possible overflow and crash in the SMB analyzer when receiving a specially crafted packet
  • Fix two possible crashes when converting IP headers for output via the raw_packet event

Reported by: Tim Wojtulewicz

Details

Provenance
leresAuthored on Sep 19 2022, 11:50 PM
Parents
R11:d29e610a8aae: databases/mongodb60: Add misisng hyphen
Branches
Unknown
Tags
Unknown