vendor:
Snort
by:
Laurent Gaffi�
3.3
CVSS
LOW
Remote DoS
None
CWE
Product Name: Snort
Affected Version From: 2.8.2005
Affected Version To: 2.8.2005
Patch Exists: YES
Related CWE: None
CPE: None
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: x86, x64
2009
Snort <= 2.8.5 IPV6 Remote DoS
A remote DoS was present in Snort 2.8.5 when parsing some specialy IPv6 crafted packet. To trigger theses bugs you need to have compiled snort with the --enable-ipv6 option, and run it in verbose mode (-v). You can reproduce theses two differents bugs easily by using the Python low-level networking lib Scapy (http://www.secdev.org/projects/scapy/files/scapy-latest.zip)
Mitigation:
A new version correcting theses issues as been released (2.8.5.1) : http://www.snort.org/downloads