Skip to content
Commit 84a7773d authored by Craig Leres's avatar Craig Leres
Browse files

security/vuxml: Mark zeek < 4.0.6 as vulnerable as per:

    https://github.com/zeek/zeek/releases/tag/v4.0.6

 - Fix potential unbounded state growth in the FTP analyzer when
   receiving a specially-crafted stream of commands. This may lead
   to a buffer overflow and cause Zeek to crash. Due to the possibility
   of this happening with packets received from the network, this
   is a potential DoS vulnerabilty.

Reported by:    Tim Wojtulewicz
parent 21c2f510
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment