CVE detail
CVE-2008-1804 — CVE-2008-1804
Published 2008-05-22 · Modified 2026-06-16 · Vendor snort · Product snort · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0227
EPSS probability
exploitation probability, 30d
81.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by using a different TTL for each fragment.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References