Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-1804

preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by using a different TTL for each fragment.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 71.4%
CVSS Severity
CVSS v2 Score 6.8
References
Products affected by CVE-2008-1804
  • Snort » Snort » Version: N/A
    cpe:2.3:a:snort:snort:-
  • Snort » Snort » Version: 1.6
    cpe:2.3:a:snort:snort:1.6
  • Snort » Snort » Version: 1.8.0
    cpe:2.3:a:snort:snort:1.8.0
  • Snort » Snort » Version: 1.8.1
    cpe:2.3:a:snort:snort:1.8.1
  • Snort » Snort » Version: 1.8.2
    cpe:2.3:a:snort:snort:1.8.2
  • Snort » Snort » Version: 1.8.3
    cpe:2.3:a:snort:snort:1.8.3
  • Snort » Snort » Version: 1.8.4
    cpe:2.3:a:snort:snort:1.8.4
  • Snort » Snort » Version: 1.8.5
    cpe:2.3:a:snort:snort:1.8.5
  • Snort » Snort » Version: 1.8.6
    cpe:2.3:a:snort:snort:1.8.6
  • Snort » Snort » Version: 1.8.7
    cpe:2.3:a:snort:snort:1.8.7
  • Snort » Snort » Version: 1.9.0
    cpe:2.3:a:snort:snort:1.9.0
  • Snort » Snort » Version: 1.9.1
    cpe:2.3:a:snort:snort:1.9.1
  • Snort » Snort » Version: 2.0
    cpe:2.3:a:snort:snort:2.0
  • Snort » Snort » Version: 2.6.1
    cpe:2.3:a:snort:snort:2.6.1
  • Snort » Snort » Version: 2.6.1.1
    cpe:2.3:a:snort:snort:2.6.1.1
  • Snort » Snort » Version: 2.6.1.2
    cpe:2.3:a:snort:snort:2.6.1.2
  • Snort » Snort » Version: 2.6.2
    cpe:2.3:a:snort:snort:2.6.2
  • Snort » Snort » Version: 2.7_beta1
    cpe:2.3:a:snort:snort:2.7_beta1


Contact Us

Shodan ® - All rights reserved