Record summary

CVE-2004-2652 has a selected CVSS score of 7.8; EIP currently links 2 catalogued exploits.

Description

The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, allows remote attackers to cause a denial of service (crash) via packets with invalid TCP/IP options, which trigger a null dereference.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBSnort 2.1/2.2 - DecodeTCPOptions Remote Denial of Service (1)ExploitDB exploitby Marcin ZgoreckiNot analyzed1 file
ExploitDB

PoC details
ExploitDBSnort 2.1/2.2 - DecodeTCPOptions Remote Denial of Service (2)ExploitDB exploitby Antimatt3rNot analyzed1 file
ExploitDB

PoC details

References

10