vulnerability

FreeBSD: VID-bc83cfc9-42cf-4b00-97ad-d352ba0c5e2b: zeek -- null-pointer dereference vulnerability

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:N/I:N/A:C)
Published
Apr 21, 2021
Added
Nov 4, 2022
Modified
Dec 10, 2025

Description

Jon Siwek of Corelight reports: Fix null-pointer dereference when encountering an invalid enum name in a config/input file that tries to read it into a set[enum]. For those that have such an input feed whose contents may come from external/remote sources, this is a potential DoS vulnerability.

Solution

freebsd-upgrade-package-zeek

References

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.