Actions
Bug #4312
closed
JL
SB
dcerpc: no alert triggered with dce opnum in 6.0
Bug #4312:
dcerpc: no alert triggered with dce opnum in 6.0
Affected Versions:
Effort:
Difficulty:
Label:
Description
For the attached suricata-verify test, alert is not triggered for rules in the file named ".broken.rules". The only diff this file has from the other rule file is an opnum to match against.
via Jeff Lucovsky via Corelight researcher
Files
JL Updated by Jeff Lucovsky about 5 years ago
- Copied from Bug #4198: dcerpc: no alert triggered with dce opnum in 6.0 added
VJ Updated by Victor Julien about 5 years ago
- Status changed from Assigned to In Progress
SB Updated by Shivani Bhardwaj about 5 years ago
- Status changed from In Progress to Closed
Actions