Sourcefire VRT Rules Update

Date: 2010-08-12

This is the complete list of rules modified and added in the Sourcefire VRT Certified rule pack for Snort version

The format of the file is:

sid - Message (rule group, priority)

New rules:
17138 <-> EXPLOIT iSCSI target multiple implementations iSNS stack buffer overflow attempt (exploit.rules, High)
17139 <-> EXPLOIT Symantec Alert Management System HNDLRSVC arbitrary command execution attempt (exploit.rules, High)
17140 <-> WEB-MISC OpenView Network Node Manager OvJavaLocale buffer overflow attempt (web-misc.rules, High)

Updated rules:
13911 <-> WEB-CLIENT Microsoft search file download attempt (web-client.rules, Low)