Snort++ build 223 is now available on Snort.org!
Snort Releases <[email protected]>
| Newsgroups | gmane.comp.security.ids.snort.devel |
|---|---|
| Organization | Snort |
| Message-ID | <[email protected]> |
Snort++ build 223 is now available on snort.org. This is the latest monthly update available for download <https://snort.org/downloads/#snort-3.0>. You can also get the latest updates from github (snortadmin/snort3 <https://github.com/snortadmin/snort3>) which is updated weekly. There are too many changes to list here so check the ChangeLog <https://github.com/snortadmin/snort3/blob/master/ChangeLog> for details. Enhancements: * port 2983 smb active response updates * add JavaScript normalization to new http_inspect * add MIME file processing to new http_inspect * add alternate fast patterns for dce_udp endianness * add dce auto detect to wizard Bug Fixes: * fix appid service dispatch handling issue thanks to João Soares <[email protected]> for reporting the issue * fix paf-type flushing of single segments thanks to João Soares for reporting the issue * fix modbus_data handling to not skip options thanks to [email protected] for reporting the issue * fix comment in snort.lua re install directory use; thanks to Yang Wang for sending the pull request * fix fast pattern selection when multiple designated thanks to [email protected] for reporting the issue * fix image sizes to fit page thanks to wyatuestc for reporting the issue * change -L to -K in README and manual thanks to jncornett for reporting the issue * fix daemonization thanks to João Soares for reporting the issue Other Changes: * appid overhaul to address threading issues, leaks, and sanitizer and analyzer issues * fix appid pattern matching for http * fix reload crash with file inspector * fix various race conditions reported by thread sanitizer * fix thread termination segfaults after DAQ module initialization fails * several build fixes for non-x86, Illumos, and others * create pid file after dropping privileges * user manual was reorganized and expanded Please submit bugs, questions, and feedback to [email protected] or the Snort-Users mailing list. Happy Snorting! The Snort Release Team ------------------------------------------------------------------------------ Developer Access Program for Intel Xeon Phi Processors Access to Intel Xeon Phi processor-based developer platforms. With one year of Intel Parallel Studio XE. Training and support from Colfax. Order your platform today.http://sdm.link/intel _______________________________________________ Snort-devel mailing list [email protected] https://lists.sourceforge.net/lists/listinfo/snort-devel Archive: http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel Please visit http://blog.snort.org for the latest news about Snort!