|
Snort Bug is Nothing to Sniff at |
|
|
|
Source: TheRegister - Posted by Bill Keys
|
Snort and Sourcefire users are urged to update their intrusion detection software following the discovery of a potentially serious security vulnerability.
A stack-based buffer overflow security bug in the preprocessor handling DCE/RPC traffic means hackers could inject hostile code onto systems running the popular open source Snort package and its commercial equivalent, Sourcefire. Snort versions 2.6.1, 2.6.1.1, 2.6.1.2 and Snort 2.7.0 beta 1 are all vulnerable to the bug.
Intrusion detection software packages are the CCTV cameras of the network security world, recording hacking attacks, and (in some well defined cases) blocking potentially hostile traffic. Worse than simply disabling this protection, the vulnerability creates a means to attack networks using the very tools designed to safeguard them.
Read this full article at TheRegister
Powered by AkoComment! |