CVE-2019-10054

Severity CVSS v4.0:
Pending analysis
Type:
CWE-191 Integer Underflow (Wrap or Wraparound)
Publication date:
28/08/2019
Last modified:
21/07/2021

Description

An issue was discovered in Suricata 4.1.3. The function process_reply_record_v3 lacks a check for the length of reply.data. It causes an invalid memory access and the program crashes within the nfs/nfs3.rs file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:suricata-ids:suricata:4.1.3:*:*:*:*:*:*:*