Actions
Bug #4198
closeddcerpc: no alert triggered with dce opnum in 6.0
Affected Versions:
Effort:
Difficulty:
Label:
Needs backport to 6.0
Description
For the attached suricata-verify test, alert is not triggered for rules in the file named ".broken.rules". The only diff this file has from the other rule file is an opnum to match against.
via Jeff Lucovsky via Corelight researcher
Files
Updated by Victor Julien almost 4 years ago
- Target version changed from 6.0.2 to 7.0.0-beta1
- Label Needs backport to 6.0 added
Have you started looking at this?
Updated by Jeff Lucovsky almost 4 years ago
- Copied to Bug #4312: dcerpc: no alert triggered with dce opnum in 6.0 added
Updated by Shivani Bhardwaj over 3 years ago
- Status changed from Assigned to Closed
Closed by: https://github.com/OISF/suricata/pull/5913
Actions