Snort++ build 223 is now available on Snort.org!

Snort Releases <[email protected]>
Newsgroups gmane.comp.security.ids.snort.devel
Organization Snort
Message-ID <[email protected]>
Snort++ build 223 is now available on snort.org.  This is the latest monthly
update available for download <https://snort.org/downloads/#snort-3.0>.  
You can also get the latest updates from github
(snortadmin/snort3 <https://github.com/snortadmin/snort3>) which is 
updated weekly.

There are too many changes to list here so check the ChangeLog 
<https://github.com/snortadmin/snort3/blob/master/ChangeLog> for details.

Enhancements:

* port 2983 smb active response updates
* add JavaScript normalization to new http_inspect
* add MIME file processing to new http_inspect
* add alternate fast patterns for dce_udp endianness
* add dce auto detect to wizard

Bug Fixes:

* fix appid service dispatch handling issue
  thanks to João Soares <[email protected]> for reporting the issue
* fix paf-type flushing of single segments
  thanks to João Soares for reporting the issue
* fix modbus_data handling to not skip options
  thanks to [email protected] for reporting the issue
* fix comment in snort.lua re install directory use;
  thanks to Yang Wang for sending the pull request
* fix fast pattern selection when multiple designated
  thanks to [email protected] for reporting the issue
* fix image sizes to fit page
  thanks to wyatuestc for reporting the issue
* change -L to -K in README and manual
  thanks to jncornett for reporting the issue
* fix daemonization
  thanks to João Soares for reporting the issue

Other Changes:

* appid overhaul to address threading issues, leaks, and sanitizer and
  analyzer issues
* fix appid pattern matching for http
* fix reload crash with file inspector
* fix various race conditions reported by thread sanitizer
* fix thread termination segfaults after DAQ module initialization fails
* several build fixes for non-x86, Illumos, and others
* create pid file after dropping privileges
* user manual was reorganized and expanded

Please submit bugs, questions, and feedback to [email protected] or the
Snort-Users mailing list.

Happy Snorting!
The Snort Release Team

------------------------------------------------------------------------------
Developer Access Program for Intel Xeon Phi Processors
Access to Intel Xeon Phi processor-based developer platforms.
With one year of Intel Parallel Studio XE.
Training and support from Colfax.
Order your platform today.http://sdm.link/intel

_______________________________________________
Snort-devel mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/snort-devel

Archive:
http://sourceforge.net/mailarchive/forum.php?forum_name=snort-devel

Please visit http://blog.snort.org for the latest news about Snort!
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.