SERVER-OTHER -- Snort has detected traffic exploiting vulnerabilities in a server in the network.
SERVER-OTHER Corosync 2.3+ with sha256 integer overflow attempt detected
This event is generated when a corosync v2.3+ integer overflow attempt is detected. Impact: Misc Attack Details: Ease of Attack:
No public information
No known false positives
Cisco Talos Intelligence Group
Tactic:
Technique:
For reference, see the MITRE ATT&CK vulnerability types here: https://attack.mitre.org
CVE-2018-1084corosync before version 2.4.4 is vulnerable to an integer overflow in exec/totemcrypto.c. |
|