Snort 2.4.1 Now Available
Jennifer Steffens <[email protected]> Fri, 16 Sep 2005 19:41:17 -0400
| Newsgroups | gmane.comp.security.ids.snort.announce |
|---|---|
| Message-ID | <[email protected]> |
Hey Everyone,
Snort 2.4.1 has been released and addresses a bug in TCP SACK processing
that could result in a DoS for some text based logging methods. In
addition, this release includes changes and fixes for several issues
reported by the community, such as:
* Pcap logging is now the default for Snort at startup, use
"-K ascii"
to revert to old behavior.
* Change ip_proto to ip for portscan configuration. Thanks David
Bianco
for pointing this out.
* Added support for new OpenBSD pflog format. Older pflog format,
OpenBSD 3.3 and earlier is still supported. Thanks Breno Leitao
and Christian Reis for the patch.
* ...
Snort 2.4.1 can be found at
http://www.snort.org/dl/current/snort-2.4.1.tar.gz. Please remember that
rules are no longer included with releases but can be downloaded at
http://www.snort.org/pub-bin/downloads.cgi.
If you have any questions, let us know at [email protected].
Cheers,
Jennifer
--
Jennifer Steffens
Snort Product Management
Sourcefire, Inc.
-------------------------------------------------------
SF.Net email is sponsored by:
Tame your development challenges with Apache's Geronimo App Server. Download
it for free - -and be entered to win a 42" plasma tv or your very own
Sony(tm)PSP. Click here to play: http://sourceforge.net/geronimo.php