Actions
Bug #4312
closeddcerpc: no alert triggered with dce opnum in 6.0
Affected Versions:
Effort:
Difficulty:
Label:
Description
For the attached suricata-verify test, alert is not triggered for rules in the file named ".broken.rules". The only diff this file has from the other rule file is an opnum to match against.
via Jeff Lucovsky via Corelight researcher
Files
Updated by Jeff Lucovsky almost 4 years ago
- Copied from Bug #4198: dcerpc: no alert triggered with dce opnum in 6.0 added
Updated by Victor Julien almost 4 years ago
- Status changed from Assigned to In Progress
Updated by Shivani Bhardwaj almost 4 years ago
- Status changed from In Progress to Closed
Actions