CVE-2018-10244: Oisf Suricata
Critical severity, CVSS 9.8. EPSS: 1.7% chance of exploitation in the next 30 days.
Suricata version 4.0.4 incorrectly handles the parsing of an EtherNet/IP PDU. A malformed PDU can cause the parsing code to read beyond the allocated data because DecodeENIPPDU in app-layer-enip-commmon.c has an integer overflow during a length check.
Affected products
- Oisf Suricata: version 4.0.4 only
Published 2019-04-04. Last modified 2026-06-17.