CVE-2005-3252
60Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 84%
from disclosure to weapon0 days
Published on NVDOct 18
1st PoCOct 18
metasploitOct 18
exploitation probability
84%top 1% of all CVEs
observed exploitation
nono source reports it
5 public exploit(s)
Stack-based buffer overflow in the Back Orifice (BO) preprocessor for Snort before 2.4.3 allows remote attackers to execute arbitrary code via a crafted UDP packet.
Affected products
n/a · n/apublic PoCs found — 5
exploitdbwww.exploit-db.com/exploits/10026unverifiedexploitdbwww.exploit-db.com/exploits/1313unverifiedexploitdbwww.exploit-db.com/exploits/1272unverifiedexploitdbwww.exploit-db.com/exploits/1314unverifiedexploitdbwww.exploit-db.com/exploits/16834unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://archives.neohapsis.com/archives/fulldisclosure/2005-10/0505.htmlhttp://archives.neohapsis.com/archives/fulldisclosure/2005-11/0010.htmlhttp://secunia.com/advisories/17220http://secunia.com/advisories/17255http://secunia.com/advisories/17559http://securitytracker.com/id?1015070http://www130.nortelnetworks.com/cgi-bin/eserv/cs/main.jsp?cscat=BLTNDETAIL&DocumentOID=362187&RenditionID=http://www130.nortelnetworks.com/cgi-bin/eserv/cs/main.jsp?cscat=BLTNDETAIL&DocumentOID=363396&RenditionID=http://www.kb.cert.org/vuls/id/175500http://www.osvdb.org/20034http://www.securityfocus.com/bid/15131http://www.snort.org/docs/change_logs/2.4.3/Changelog.txt