Revisions of suricata
buildservice-autocommit
accepted
request 798722
from
Martin Hauke (mnhauke)
(revision 7)
auto commit by copy to link target
Martin Hauke (mnhauke)
committed
(revision 6)
- Switch to python3 - Update to version 4.1.8 * Bug #3492: Backport 4 BUG_ON(strcasecmp(str, “any”) in DetectAddressParseString * Bug #3508: rule parsing: memory leaks * Bug #3527: 4.1.x Kerberos vulnerable to TCP splitting evasion * Bug #3533: Skip over ERF_TYPE_META records * Bug #3551: file logging: complete files sometimes marked ‘TRUNCATED’ * Bug #3572: rust: smb compile warnings * Bug #3579: Faulty signature with two threshold keywords does not generate an error and never match * Bug #3581: random failures on sip and http-evader suricata-verify tests * Bug #3596: ftp: asan detects leaks of expectations * Bug #3599: rules: memory leaks in pktvar keyword * Bug #3601: rules: bad address block leads to stack exhaustion * Bug #3603: rules: crash on ‘internal’-only keywords * Bug #3605: rules: missing ‘consumption’ of transforms before pkt_data would lead to crash * Bug #3607: rules: minor memory leak involving pcre_get_substring * Bug #3608: ssl/tls: ASAN issue in SSLv3ParseHandshakeType * Bug #3611: defrag: asan issue * Bug #3633: file-store.stream-depth not working as expected when configured to a specfic value (4.1.x) * Bug #3645: Invalid memory read on malformed rule with Lua script * Bug #3647: rules: memory leaks on failed rules * Bug #3648: CIDR Parsing Issue
buildservice-autocommit
accepted
request 777416
from
Martin Hauke (mnhauke)
(revision 5)
auto commit by copy to link target
Martin Hauke (mnhauke)
committed
(revision 4)
- Update to 4.1.7 * Bug #3417: –disable-geoip does not work * Bug #3448: Suricata 4.1 Seg Fault: Socket Control pcap-file and corrupt pcap * Bug #3452: smb: post-GAP file tx handling * Bug #3453: coverity: CID 1456680: Incorrect expression (IDENTICAL_BRANCHES) * Bug #3470: gcc10: compilation failure unless -fcommon is supplied * Bug #3471: nfs: post-GAP some transactions never close * Bug #3472: nfs: post-GAP file tx handling * Bug #3474: Dropping privileges does not work with NFLOG - Update to 4.1.6 * Bug #3276: address parsing: memory leak in error path * Bug #3278: segfault when test a nfs pcap file * Bug #3279: ikev2 enabled in config even if Rust is disabled * Bug #3325: lua issues on arm (fedora:29) * Bug #3326: Static build with pcap fails * Bug #3327: tcp: empty SACK option leads to decoder event * Bug #3347: BPF filter on command line not honored for pcap file * Bug #3355: DNS: DNS over TCP transactions logged with wrong direction. * Bug #3356: DHCP: Slow down over time due to lack of detect flags * Bug #3369: byte_extract does not work in some situations * Bug #3385: fast-log: icmp type prints wrong value * Bug #3387: suricata is logging tls log repeatedly if custom mode is enabled * Bug #3388: TLS Lua output does not work without TLS log
buildservice-autocommit
accepted
request 682644
from
Martin Hauke (mnhauke)
(revision 3)
auto commit by copy to link target
Martin Hauke (mnhauke)
committed
(revision 2)
- Update to version 4.0.7 * Failed Assertion, Suricata Abort - util-mpm-hs.c line 163 * unix runmode deadlock when using too many threads * rule reload with workers mode and NFQUEUE not working stable * TCP FIN/ACK, RST/ACK in HTTP - detection bypass * afpacket doesn't wait for all capture threads to start * DNS Golden Transaction ID - detection bypass * Invalid detect-engine config could lead to segfault * suricata.c ConfigGetCaptureValue - PCAP/AFP fallthrough to strip_trailing_plus * Stats interval are 1 second too early each tick * rust/dns/lua - The Lua calls for DNS values when using Rust don't behave the same as the C implementation. * out of bounds read in detection * smtp: improve pipelining support
Martin Hauke (mnhauke)
committed
(revision 1)
Displaying all 7 revisions