Actions
Bug #4111
closeddnp3: DOS in long loop of zero sized objects
Affected Versions:
Effort:
Difficulty:
Label:
Needs backport to 5.0, Needs backport to 6.0
Description
Found by fuzzing with improved fuzz_applayerparserparse from branch https://github.com/OISF/suricata/pull/5538
Reproducer is FUZZ_APPLAYER=14 ./src/fuzz_applayerparserparse timeout-de4cf4d0666f9742dd8d5c6b1559a325b3f3dba7
Input takes more than 10 seconds to be proceeded
Files
Updated by Jeff Lucovsky about 4 years ago
- Target version changed from 6.0.1 to 5.0.5
- Label deleted (
Needs backport to 5.0, Needs backport to 6.0)
Updated by Jeff Lucovsky about 4 years ago
- Target version changed from 5.0.5 to 6.0.1
- Label Needs backport to 5.0, Needs backport to 6.0 added
Updated by Jeff Lucovsky about 4 years ago
- Copied to Bug #4127: DOS in DNP3 with long loop of zero sized objects added
Updated by Philippe Antoine about 4 years ago
Now found by oss-fuzz https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=27495
Updated by Victor Julien about 4 years ago
- Subject changed from DOS in DNP3 with long loop of zero sized objects to dnp3: DOS in long loop of zero sized objects
Updated by Victor Julien about 4 years ago
- Status changed from In Review to Closed
Actions