Project

General

Profile

Actions

Bug #2863

closed

out of bounds read in detection

Added by Victor Julien over 5 years ago. Updated over 5 years ago.

Status:
Closed
Priority:
Normal
Assignee:
Target version:
Affected Versions:
Effort:
Difficulty:
Label:

Description

A rule that is not set to 'alert http' that uses a regular content match combined with a pcre with an http modifier (e.g. /U) can lead to the HTTP inspection functions accessing a non-HTTP state. This can lead to out of bounds reads and other memory issues.

Actions

Also available in: Atom PDF