Stack-based buffer overflow in the DCE/RPC preprocessor in Snort before 2.6.1.3, and 2.7 before beta 2; and Sourcefire Intrusion Sensor; allows remote attackers to execute arbitrary code via crafted SMB traffic. All affected Sourcefire Intrustion Sensor products are only vulnerable if they are used with SEUs prior to SEU 64. Upgrade to the latest version of Snort (2.6.1.3 or later), available from the Snort Web site.
Publication date: Tue, 20 Feb 2007 07:28:00 +0000