mirror of https://github.com/OISF/suricata
You cannot select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Ticket: #4569 If a FIN+SYN packet is sent, the destination may keep the connection alive instead of starting to close it. In this case, a later SYN packet will be ignored by the destination. Previously, Suricata considered this a session reuse, and thus used the sequence number of the last SYN packet, instead of using the one of the live connection, leading to evasion. This commit errors on FIN+SYN so that they do not get processed as regular FIN packets. |
3 years ago | |
---|---|---|
.. | ||
Makefile.am | 4 years ago | |
app-layer-events.rules | ||
decoder-events.rules | 4 years ago | |
dhcp-events.rules | 7 years ago | |
dnp3-events.rules | ||
dns-events.rules | 5 years ago | |
files.rules | 5 years ago | |
http-events.rules | 3 years ago | |
http2-events.rules | 3 years ago | |
ipsec-events.rules | 4 years ago | |
kerberos-events.rules | 7 years ago | |
modbus-events.rules | ||
mqtt-events.rules | 4 years ago | |
nfs-events.rules | 8 years ago | |
ntp-events.rules | ||
smb-events.rules | 4 years ago | |
smtp-events.rules | 5 years ago | |
ssh-events.rules | 5 years ago | |
stream-events.rules | 3 years ago | |
tls-events.rules | 5 years ago |