diff options
author | Craig Leres <leres@FreeBSD.org> | 2019-09-17 23:13:57 +0000 |
---|---|---|
committer | Craig Leres <leres@FreeBSD.org> | 2019-09-17 23:13:57 +0000 |
commit | 6c6354e4391b6f6346251ac3863368c7af0825e6 (patch) | |
tree | 1483e05314e009213a7dbca2ecfa1216e6bcff9e /java/openjdk13 | |
parent | - Update to 0.9 (diff) |
security/bro: Update to 2.6.4 and address a potential Denial of
Service vulnerability:
https://raw.githubusercontent.com/zeek/zeek/3b5a9f88ece1d274edee897837e280ef751bde94/NEWS
- The NTLM analyzer did not properly handle AV Pair sequences that
were either empty or unterminated, resulting in invalid memory
access or heap buffer over-read. The NTLM analyzer is enabled
by default and used in the analysis of SMB, DCE/RPC, and GSSAPI
protocols.
Approved by: ler (mentor, implicit)
MFH: 2019Q3
Security: 55571619-454e-4769-b1e5-28354659e152
Diffstat (limited to 'java/openjdk13')
0 files changed, 0 insertions, 0 deletions