FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

zeek -- potential DoS vulnerability

Affected packages
zeek < 7.0.2

Details

VuXML ID d47b7ae7-fe1d-4f7f-919a-480ca8035f00
Discovery 2024-09-24
Entry 2024-09-24

Tim Wojtulewicz of Corelight reports:

The POP3 parser has been hardened to avoid unbounded state growth in the face of one-sided traffic capture or when enabled for non-POP3 traffic.

References

URL https://github.com/zeek/zeek/releases/tag/v7.0.2