Sploitus

CVE-2014-6603

No indexed exploits for CVE-2014-6603 yet

The SSHParseBanner function in SSH parser (app-layer-ssh.c) in Suricata before 2.0.4 allows remote attackers to bypass SSH rules, cause a denial of service (crash), or possibly have unspecified other impact via a crafted banner, which triggers a large memory allocation or an out-of-bounds write.

Affected products
Alt Linux, Suricata
Openinfosecfoundation Suricata
≤ 2.0.3-2, 2.0.1-1, 2.0.1-2, 2.0.2-1, 2.0.2-2, 2.0.3-1
Fix
Available
CVSS 2.0
5.0 MEDIUM
EPSS
3.2% (87th percentile)
Weakness
CWE-399
NVD status
Modified
Published
2014-10-07
CVE-2014-6603 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2014-6603 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2014-6603 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.