Actions
Bug #7279
closed
PA
PA
dns: protocol detection is not strict enough
Bug #7279:
dns: protocol detection is not strict enough
Affected Versions:
Effort:
Difficulty:
Label:
Description
From https://github.com/OISF/suricata/pull/11794 and TLPR pcaps from QA showing the deviation
PA Updated by Philippe Antoine over 1 year ago
- Related to Bug #7228: dns: no data logged, and no events with udp corrupt additional record added
PA Updated by Philippe Antoine over 1 year ago
- Subject changed from dns: custom protocol data exfiltration traffic on port 53 detected as DNS with later app-layer parser error to dns: protocol detection is not strict enough
It accepts as DNS custom protocol data exfiltration traffic on port 53 with later app-layer parser error on TLP pcap
PA Updated by Philippe Antoine over 1 year ago
- Status changed from New to In Review
PA Updated by Philippe Antoine over 1 year ago
- Status changed from In Review to Closed
Actions