Actions
Security #8683
closed
OT
PA
ftp: RETR without PORT/PASV triggers permanent app-layer detection bypass (7.0.x backport)
Security #8683:
ftp: RETR without PORT/PASV triggers permanent app-layer detection bypass (7.0.x backport)
JI Updated by Jason Ish about 2 months ago
- GHSA set to GHSA-56wx-7hqh-wfgr
PA Updated by Philippe Antoine about 2 months ago
- Target version changed from 7.0.18 to 7.0.17
JI Updated by Jason Ish about 2 months ago
- Severity set to LOW
PA Updated by Philippe Antoine about 2 months ago
- Status changed from Assigned to In Review
Backport PR: https://github.com/OISF/suricata/pull/15753
PA Updated by Philippe Antoine about 1 month ago
- Status changed from In Review to Rejected
As discussed with Victor, this fix is too intrusive for QA for a low severity security issue and 7 getting eol
See https://github.com/OISF/suricata/pull/15753#issuecomment-4848274559
JI Updated by Jason Ish about 1 month ago
GHSA updated to remove upgrading to 7.0.17 as a fix.
JI Updated by Jason Ish about 1 month ago
- CVE set to 2026-63450
Actions