vulnerability

FreeBSD: VID-1A6B7641-AED2-4BA1-96F4-C282D5B09C37: zeek -- Various vulnerabilities

Severity
9
CVSS
(AV:N/AC:L/Au:N/C:C/I:N/A:C)
Published
May 6, 2020
Added
May 7, 2020
Modified
Feb 19, 2025

Description



Jon Siwek of Corelight reports:



This release fixes the following security issues:




Fix buffer over-read in Ident analyzer



Fix SSL scripting error leading to uninitialized field


access and memory leak



Fix POP3 analyzer global buffer over-read



Fix potential stack overflows due to use of


Variable-Length-Arrays





Solution

freebsd-upgrade-package-zeek

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.