mirror of https://github.com/OISF/suricata
You cannot select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
Ticket: #4569 If a FIN+SYN packet is sent, the destination may keep the connection alive instead of starting to close it. In this case, a later SYN packet will be ignored by the destination. Previously, Suricata considered this a session reuse, and thus used the sequence number of the last SYN packet, instead of using the one of the live connection, leading to evasion. This commit errors on FIN+SYN so that they do not get processed as regular FIN packets. |
4 years ago | |
|---|---|---|
| .. | ||
| Makefile.am | 5 years ago | |
| app-layer-events.rules | ||
| decoder-events.rules | 4 years ago | |
| dhcp-events.rules | ||
| dnp3-events.rules | ||
| dns-events.rules | ||
| files.rules | ||
| http-events.rules | 4 years ago | |
| http2-events.rules | 4 years ago | |
| ipsec-events.rules | 5 years ago | |
| kerberos-events.rules | ||
| modbus-events.rules | ||
| mqtt-events.rules | ||
| nfs-events.rules | ||
| ntp-events.rules | ||
| smb-events.rules | ||
| smtp-events.rules | ||
| ssh-events.rules | ||
| stream-events.rules | 4 years ago | |
| tls-events.rules | ||