The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote malicious users to evade detection of certain attacks, possibly related to IP option lengths.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sourcefire snort 2.4.3 |