Vulnerability Description
Bro before Bro v2.5.2 is vulnerable to an out of bounds write in the ContentLine analyzer allowing remote attackers to cause a denial of service (crash) and possibly other exploitation.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bro | Bro | 2.5.2 |
Related Weaknesses (CWE)
References
- https://bro-tracker.atlassian.net/browse/BIT-1856Third Party Advisory
- https://github.com/bro/bro/commit/6c0f101a62489b1c5927b4ed63b0e1d37db40282Third Party Advisory
- https://bro-tracker.atlassian.net/browse/BIT-1856Third Party Advisory
- https://github.com/bro/bro/commit/6c0f101a62489b1c5927b4ed63b0e1d37db40282Third Party Advisory
FAQ
What is CVE-2017-1000458?
CVE-2017-1000458 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Bro before Bro v2.5.2 is vulnerable to an out of bounds write in the ContentLine analyzer allowing remote attackers to cause a denial of service (crash) and possibly other exploitation.
How severe is CVE-2017-1000458?
CVE-2017-1000458 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2017-1000458?
Check the references section above for vendor advisories and patch information. Affected products include: Bro Bro.