peter bassill · operator
$ cve CVE-2003-0209 JSON

CVE-2003-0209 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 38.6% (pctl 99)

Patch early

A public exploit exists.

Description

Integer overflow in the TCP stream reassembly module (stream4) for Snort 2.0 and earlier allows remote attackers to execute arbitrary code via large sequence numbers in packets, which enable a heap-based buffer overflow.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS38.63% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2003-05-05
Last modified2026-06-16

Affected (2)

VendorProduct
smoothwallsmoothwall
sourcefiresnort

Public exploits

SourceTitleDate
exploit-dbSnort 1.9.1 - 'p7snort191.sh' Remote Command Execution2003-04-23

References

→ the Explorer  ·  watch your stack  ·  NVD