Vulnerability Description
Cisco Sourcefire Snort 3.0 before build 233 has a Buffer Overread related to use of a decoder array. The size was off by one making it possible to read past the end of the array with an ether type of 0xFFFF. Increasing the array size solves this problem.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Sourcefire Snort | 3.0 |
Related Weaknesses (CWE)
References
- http://blog.snort.org/2017/05/snort-vulnerabilities-found.htmlThird Party Advisory
- http://www.securitytracker.com/id/1038483
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-2Vendor Advisory
- http://blog.snort.org/2017/05/snort-vulnerabilities-found.htmlThird Party Advisory
- http://www.securitytracker.com/id/1038483
FAQ
What is CVE-2017-6658?
CVE-2017-6658 is a vulnerability with a CVSS score of 7.5 (HIGH). Cisco Sourcefire Snort 3.0 before build 233 has a Buffer Overread related to use of a decoder array. The size was off by one making it possible to read past the end of the array with an ether type of ...
How severe is CVE-2017-6658?
CVE-2017-6658 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-6658?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Sourcefire Snort.