Home/Product/snort
Product

snort

28 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2024-20342
>= 3.0.0.0 and < 3.1.74.0
Multiple Cisco products are affected by a vulnerability in the rate filtering feature of the Snort detection engine that could all
5.8MEDIUM
CVE-2024-20363
>= 3.0.0-233 and < 3.1.69.0
Multiple Cisco products are affected by a vulnerability in the Snort Intrusion Prevention System (IPS) rule engine that could allo
5.8MEDIUM
CVE-2023-20246
>= 3.0.0 and < 3.1.57.0
Multiple Cisco products are affected by a vulnerability in Snort access control policies that could allow an unauthenticated, remo
5.8MEDIUM
CVE-2021-40116
>= 3.0.0.0 and < 3.1.0.100
Multiple Cisco products are affected by a vulnerability in Snort rules that could allow an unauthenticated, remote attacker to cau
8.6HIGH
CVE-2021-40114
>= 2.0.0 and < 2.9.18
Multiple Cisco products are affected by a vulnerability in the way the Snort detection engine processes ICMP traffic that could al
6.8MEDIUM
CVE-2021-1495
< 2.9.17.1
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote
5.8MEDIUM
CVE-2021-1236
< 2.9.14
Multiple Cisco products are affected by a vulnerability in the Snort application detection engine that could allow an unauthentica
5.3MEDIUM
CVE-2021-1224
< 2.9.17
Multiple Cisco products are affected by a vulnerability with TCP Fast Open (TFO) when used in conjunction with the Snort detection
5.8MEDIUM
CVE-2021-1223
< 2.9.17
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote
7.5HIGH
CVE-2020-3299
< 2.9.13.1
Multiple Cisco products are affected by a vulnerability in the Snort detection engine that could allow an unauthenticated, remote
5.8MEDIUM
CVE-2017-6657
all versions
Cisco Sourcefire Snort 3.0 before build 233 mishandles Ether Type Validation. Since valid ether type and IP protocol numbers do no
7.5HIGH
CVE-2016-1417
all versions
Untrusted search path vulnerability in Snort 2.9.7.0-WIN32 allows remote attackers to execute arbitrary code and conduct DLL hijac
8.8HIGH
CVE-2009-3641
<= 2.8.3.5
Snort before 2.8.5.1, when the -v option is enabled, allows remote attackers to cause a denial of service (application crash) via
CVE-2008-1804
<= 2.8.0
preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL va
CVE-2007-1398
all versions
The frag3 preprocessor in Snort 2.6.1.1, 2.6.1.2, and 2.7.0 beta, when configured for inline use on Linux without the ip_conntrack
CVE-2006-5276
<= 2.6.1.2
Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion S
CVE-2007-0251
all versions
Integer underflow in the DecodeGRE function in src/decode.c in Snort 2.6.1.2 allows remote attackers to trigger dereferencing of c
CVE-2006-6931
<= 2.6.2
Algorithmic complexity vulnerability in Snort before 2.6.1, during predicate evaluation in rule matching for certain rules, allows
CVE-2006-2769
all versions
The HTTP Inspect preprocessor (http_inspect) in Snort 2.4.0 through 2.4.4 allows remote attackers to bypass "uricontent" rules via
CVE-2006-0839
all versions
The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which al
CVE-2005-3252
all versions
Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitr
CVE-2004-2652
all versions
The DecodeTCPOptions function in decode.c in Snort before 2.3.0, when printing TCP/IP options using FAST output or verbose mode, a
CVE-2003-0209
all versions
Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitr
CVE-2003-0033
all versions
Buffer overflow in the RPC preprocessor for Snort 1.8 and 1.9.x before 1.9.1 allows remote attackers to execute arbitrary code via
CVE-2002-0115
all versions
Snort 1.8.3 does not properly define the minimum ICMP header size, which allows remote attackers to cause a denial of service (cra
CVE-2001-1558
all versions
Unknown vulnerability in IP defragmenter (frag2) in Snort before 1.8.3 allows attackers to cause a denial of service (crash).
CVE-2001-0669
all versions
Various Intrusion Detection Systems (IDS) including (1) Cisco Secure Intrusion Detection System, (2) Cisco Catalyst 6000 Intrusion
CVE-2000-1226
all versions
Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, all
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin