Vulnerability Description
An issue was discovered in Suricata 4.1.3. If the function filetracker_newchunk encounters an unsafe "Some(sfcm) => { ft.new_chunk }" item, then the program enters an smb/files.rs error condition and crashes.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Suricata-Ids | Suricata | 4.1.3 |
Related Weaknesses (CWE)
References
- https://github.com/OISF/suricata/pull/3734ExploitPatchThird Party Advisory
- https://redmine.openinfosecfoundation.org/issues/2896ExploitIssue TrackingThird Party Advisory
- https://suricata-ids.org/2019/04/30/suricata-4-1-4-released/Not ApplicableRelease NotesVendor Advisory
- https://github.com/OISF/suricata/pull/3734ExploitPatchThird Party Advisory
- https://redmine.openinfosecfoundation.org/issues/2896ExploitIssue TrackingThird Party Advisory
- https://suricata-ids.org/2019/04/30/suricata-4-1-4-released/Not ApplicableRelease NotesVendor Advisory
FAQ
What is CVE-2019-10051?
CVE-2019-10051 is a vulnerability with a CVSS score of 7.5 (HIGH). An issue was discovered in Suricata 4.1.3. If the function filetracker_newchunk encounters an unsafe "Some(sfcm) => { ft.new_chunk }" item, then the program enters an smb/files.rs error condition and ...
How severe is CVE-2019-10051?
CVE-2019-10051 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-10051?
Check the references section above for vendor advisories and patch information. Affected products include: Suricata-Ids Suricata.