Project

General

Profile

Actions

Security #5028

closed
SB SB

smtp: GetLine function buffers data indefinitely if 0x0a was not found in the frag'd input

Security #5028: smtp: GetLine function buffers data indefinitely if 0x0a was not found in the frag'd input

Added by Shivani Bhardwaj about 4 years ago. Updated over 3 years ago.

Status:
Closed
Priority:
Normal
Target version:
Affected Versions:
Label:
CVE:
Git IDs:

412b77cc8c970fedc3b13bb24ad4af88eb65a631

Severity:
MODERATE
Disclosure Date:

Description

The code we tend to execute is

SCReturnStruct(APP_LAYER_INCOMPLETE(state->consumed, state->input_len + 1));

indefinitely.


Related issues 1 (0 open1 closed)

Copied from Suricata - Security #5023: smtp: GetLine function buffers data indefinitely if 0x0a was not found int the frag'd inputClosedShivani BhardwajActions

SB Updated by Shivani Bhardwaj about 4 years ago Actions #1

  • Copied from Security #5023: smtp: GetLine function buffers data indefinitely if 0x0a was not found int the frag'd input added

SB Updated by Shivani Bhardwaj about 4 years ago Actions #2

  • Assignee changed from Shivani Bhardwaj to Jeff Lucovsky

The fix will have to be backported from 6.0.x and not master

JL Updated by Jeff Lucovsky about 4 years ago Actions #3

  • Status changed from Assigned to In Progress

SB Updated by Shivani Bhardwaj almost 4 years ago Actions #4

  • Status changed from In Progress to In Review
  • Assignee changed from Jeff Lucovsky to Shivani Bhardwaj

VJ Updated by Victor Julien almost 4 years ago Actions #5

  • Status changed from In Review to Resolved

Fix staged.

VJ Updated by Victor Julien almost 4 years ago Actions #6

  • Tracker changed from Bug to Security
  • Severity set to MODERATE

JI Updated by Jason Ish almost 4 years ago Actions #7

  • Status changed from Resolved to Closed
  • Git IDs updated (diff)

VJ Updated by Victor Julien over 3 years ago Actions #8

  • Private changed from Yes to No
Actions

Also available in: PDF Atom