EIP-2026-102741

PRE-CVE

Snort 2.x - PrintTcpOptions Remote Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-102741. PoCs published by VulnFact Security Labs.

AI-analyzed exploit summary This code is a functional proof-of-concept exploit for a denial-of-service vulnerability in Snort <= 2.4.0. It crafts a malformed TCP packet with a SACK option to trigger a crash in the 'PrintTcpOptions()' function when Snort is run in verbose mode.

Description

Snort 2.x - PrintTcpOptions Remote Denial of Service

Exploits (1)

exploitdb WORKING POC VERIFIED
by VulnFact Security Labs · cdoslinux
https://www.exploit-db.com/exploits/26251

This code is a functional proof-of-concept exploit for a denial-of-service vulnerability in Snort <= 2.4.0. It crafts a malformed TCP packet with a SACK option to trigger a crash in the 'PrintTcpOptions()' function when Snort is run in verbose mode.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Snort <= 2.4.0
No auth needed
Prerequisites: root privileges for raw socket creation · Snort running in verbose mode (-v flag)
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026