CVS: snort - jhewlett
Jeremy Hewlett <[email protected]> Fri, 14 Jan 2005 13:48:18 -0500
| Newsgroups | gmane.comp.security.ids.snort.cvs |
|---|---|
| Message-ID | <[email protected]> |
CVSROOT: /usr/cvsroot-snort Module name: snort Changes by: [email protected] 2005/01/14 13:48:18 Modified files: . : ChangeLog doc : README.INLINE README.WIN32 faq.tex snort_manual.pdf snort_manual.tex etc : snort.conf src : decode.c decode.h detect.c parser.c plugbase.c sfthreshold.c snort.c snort.h util.c util.h src/detection-plugins: sp_byte_jump.c sp_pattern_match.c src/preprocessors: perf-base.c snort_httpinspect.c spp_conversation.c spp_frag3.c spp_sfportscan.c spp_stream4.c src/sfutil : Makefile.am src/win32/WIN32-Includes: config.h stdint.h syslog.h src/win32/WIN32-Prj: snort.dsp snort.mak Added files: src/sfutil : sfsnprintfappend.c sfsnprintfappend.h Log message: * Fixed issue with sfPortscan reporting incorrect IP datagram length. Thanks Jon Hart for the test case and finding the bug. * Threshold/Suppression now prints properly when logging to syslog. Thanks Sekure for pointing out the problem. * Threshold memcap argument now correctly handles non-integer input. Thanks nnposter for the patch. * Fixed issue reported by Allan Jensen where on MacOS X ppp links were not decoded properly. * Fixed parsing of frag3 options to use space delimited options to handle IP address lists correctly. * Win32 updates from Chris Reid ------------------------------------------------------- The SF.Net email is sponsored by: Beat the post-holiday blues Get a FREE limited edition SourceForge.net t-shirt from ThinkGeek. It's fun and FREE -- well, almost....http://www.thinkgeek.com/sfshirt