漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Multiple Cisco Products Snort 3 DCERPC Vulnerabilities
Vulnerability Description
Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to leak sensitive information or to restart, resulting in an interruption of packet inspection. This vulnerability is due to an error in buffer handling logic when processing DCE/RPC requests, which can result in a buffer use-after-free read. An attacker could exploit this vulnerability by sending a large number of DCE/RPC requests through an established connection that is inspected by Snort 3. A successful exploit could allow the attacker to unexpectedly restart the Snort 3 Detection Engine, which could cause a denial of service (DoS).
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
Vulnerability Type
双重释放
Vulnerability Title
Cisco UTD SNORT IPS Engine Software和Cisco Secure Firewall Threat Defense Software 资源管理错误漏洞
Vulnerability Description
Cisco UTD SNORT IPS Engine Software和Cisco Secure Firewall Threat Defense Software都是美国思科(Cisco)公司的产品。Cisco UTD SNORT IPS Engine Software是一个入侵检测与防御引擎。Cisco Secure Firewall Threat Defense Software是一个防火墙操作系统。 Cisco UTD SNORT IPS Engine Software和Cisco Secure F
CVSS Information
N/A
Vulnerability Type
N/A