Actions
Security #1880
closed
VJ
VJ
icmpv4 error packets can lead to missed detection in tcp/udp
Security #1880:
icmpv4 error packets can lead to missed detection in tcp/udp
Severity:
Disclosure Date:
GHSA:
Description
If an ICMPv4 error packet is received as the first packet on a flow in the to_client direction, it confuses the rule grouping lookup logic. The toclient inspection will then continue with the wrong rule group. This can lead to missed detection.
VJ Updated by Victor Julien over 9 years ago
- Status changed from Assigned to Closed
VJ Updated by Victor Julien over 5 years ago
- Tracker changed from Bug to Security
- CVE set to 2016-10728
- Git IDs updated (diff)
Actions