ZeroHour

CVE-2018-14568

PoC ×2
CVSS 3.0
7.5 high
EPSS
2%p80
Published
()
Modified
Description

Suricata before 4.0.5 stops TCP stream inspection upon a TCP RST from a server. This allows detection bypass because Windows TCP clients proceed with normal processing of TCP data that arrives shortly after an RST (i.e., they act as if the RST had not yet been received).

Vendors
suricata-ids
Products
suricata
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.