CVE-2018-10244Integer Overflow or Wraparound in Suricata

Severity
9.8CRITICALNVD
EPSS
0.7%
top 28.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 4
Latest updateMay 14

Description

Suricata version 4.0.4 incorrectly handles the parsing of an EtherNet/IP PDU. A malformed PDU can cause the parsing code to read beyond the allocated data because DecodeENIPPDU in app-layer-enip-commmon.c has an integer overflow during a length check.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

Debianoisf/suricata< 1:4.0.5-1+3
NVDoisf/suricata4.0.4

🔴Vulnerability Details

3
GHSA
GHSA-pj4r-8xx2-hxgc: Suricata version 42022-05-14
CVEList
CVE-2018-10244: Suricata version 42019-04-04
OSV
CVE-2018-10244: Suricata version 42019-04-04

📋Vendor Advisories

1
Debian
CVE-2018-10244: suricata - Suricata version 4.0.4 incorrectly handles the parsing of an EtherNet/IP PDU. A ...2018

💬Community

1
Bugzilla
CVE-2018-10244 suricata: incorrect handling of EtherNet/IP PDU parsing lead to out-of-bounds read2019-04-08
CVE-2018-10244 — Integer Overflow or Wraparound | cvebase