Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Multiple Cisco Products Snort 3 DCERPC Vulnerabilities
Vulnerability Description
Multiple Cisco products are affected by a vulnerability in the processing of DCE/RPC requests that could allow an unauthenticated, remote attacker to cause the Snort 3 Detection Engine to leak sensitive information or to restart, resulting in an interruption of packet inspection. This vulnerability is due to an error in buffer handling logic when processing DCE/RPC requests, which can result in a buffer use-after-free read. An attacker could exploit this vulnerability by sending a large number of DCE/RPC requests through an established connection that is inspected by Snort 3. A successful exploit could allow the attacker to unexpectedly restart the Snort 3 Detection Engine, which could cause a denial of service (DoS).
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
Vulnerability Type
双重释放
Vulnerability Title
Cisco UTD SNORT IPS Engine Software和Cisco Secure Firewall Threat Defense Software 资源管理错误漏洞
Vulnerability Description
Cisco UTD SNORT IPS Engine Software和Cisco Secure Firewall Threat Defense Software都是美国思科(Cisco)公司的产品。Cisco UTD SNORT IPS Engine Software是一个入侵检测与防御引擎。Cisco Secure Firewall Threat Defense Software是一个防火墙操作系统。 Cisco UTD SNORT IPS Engine Software和Cisco Secure F
CVSS Information
N/A
Vulnerability Type
N/A