* Talos combines our security experts from TRAC, SecApps, and VRT teams.
This SRU number: 2016-06-16-002
Previous SRU number: 2016-06-13-001
Applies to:
This SEU number: 1497
Previous SEU: 1495
Applies to:
This is the complete list of rules added in SRU 2016-06-16-002 and SEU 1497.
The format of the file is:
GID - SID - Rule Group - Rule Message - Policy State
The Policy State refers to each default Sourcefire policy, Connectivity, Balanced and Security.
The default passive policy state is the same as the Balanced policy state with the exception of alert being used instead of drop.
Note: Unless stated explicitly, the rules are for the series of products listed above.
GID | SID | Rule Group | Rule Message | Policy State | ||
---|---|---|---|---|---|---|
Con. | Bal. | Sec. | ||||
1 | 39262 | FILE-FLASH | Adobe Flash Player unhandled recursion limit out of bounds read attempt | off | off | off |
1 | 39263 | FILE-FLASH | Adobe Flash Player unhandled recursion limit out of bounds read attempt | off | off | off |
1 | 39264 | FILE-FLASH | Adobe Flash Player unhandled recursion limit out of bounds read attempt | off | off | off |
1 | 39265 | FILE-FLASH | Adobe Flash Player unhandled recursion limit out of bounds read attempt | off | off | off |
1 | 39268 | SERVER-WEBAPP | Joomla PayPlans Extension com_payplans group_id SQL injection attempt | off | off | drop |
1 | 39269 | FILE-FLASH | Adobe Flash TextFormat.setTabStops use-after-free attempt | off | drop | drop |
1 | 39270 | FILE-FLASH | Adobe Flash TextFormat.setTabStops use-after-free attempt | off | drop | drop |
1 | 39271 | FILE-FLASH | Adobe Flash Player ShimContentFactory uninitialized pointer use attempt | off | drop | drop |
1 | 39272 | FILE-FLASH | Adobe Flash Player ShimContentFactory uninitialized pointer use attempt | off | drop | drop |
1 | 39273 | FILE-FLASH | Adobe Flash Player malformed ATF heap overflow attempt | off | drop | drop |
1 | 39274 | FILE-FLASH | Adobe Flash Player malformed ATF heap overflow attempt | off | drop | drop |
1 | 39275 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39276 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39277 | FILE-OTHER | Adobe Flash Player malformed JPEG XR heap overflow attempt | off | drop | drop |
1 | 39278 | FILE-OTHER | Adobe Flash Player malformed JPEG XR heap overflow attempt | off | drop | drop |
1 | 39279 | FILE-FLASH | Adobe Primetime SDK object type confusion overflow attempt | off | drop | drop |
1 | 39280 | FILE-FLASH | Adobe Primetime SDK object type confusion overflow attempt | off | drop | drop |
1 | 39281 | FILE-FLASH | Adobe Flash Player malformed JPEG-XR out of bounds memory access attempt | off | drop | drop |
1 | 39282 | FILE-FLASH | Adobe Flash Player malformed JPEG-XR out of bounds memory access attempt | off | drop | drop |
1 | 39283 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39284 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39285 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39286 | FILE-FLASH | Adobe Flash Player loadSound use after free attempt | off | drop | drop |
1 | 39287 | FILE-FLASH | Adobe Flash Player ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39288 | FILE-FLASH | Adobe Flash Player ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39289 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39290 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39291 | FILE-FLASH | Adobe Flash Player NetConnection object type confusion overflow attempt | off | drop | drop |
1 | 39292 | FILE-FLASH | Adobe Flash Player NetConnection object type confusion overflow attempt | off | drop | drop |
1 | 39293 | FILE-FLASH | Adobe Flash Player apphelp.dll dll-load exploit attempt | off | off | drop |
1 | 39294 | FILE-FLASH | Adobe Flash Player dbghelp.dll dll-load exploit attempt | off | off | drop |
1 | 39295 | FILE-FLASH | Adobe Flash Player apphelp.dll dll-load exploit attempt | off | off | drop |
1 | 39296 | FILE-FLASH | Adobe Flash Player dbghelp.dll dll-load exploit attempt | off | off | drop |
1 | 39297 | FILE-FLASH | Adobe Flash player retrieveResolvers memory corruption attempt | off | drop | drop |
1 | 39298 | FILE-FLASH | Adobe Flash player retrieveResolvers memory corruption attempt | off | drop | drop |
1 | 39299 | FILE-FLASH | Adobe Flash Player malformed regular expression use after free attempt | off | drop | drop |
1 | 39300 | FILE-FLASH | Adobe Flash Player malformed regular expression use after free attempt | off | drop | drop |
1 | 39301 | FILE-FLASH | Adobe Flash Player ExecPolicy invalid string table lookup attempt | off | drop | drop |
1 | 39302 | FILE-FLASH | Adobe Flash Player ExecPolicy invalid string table lookup attempt | off | drop | drop |
3 | 39303 | SERVER-WEBAPP | Cisco RV Series Routers command injection attempt | off | off | drop |
1 | 39304 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39305 | FILE-FLASH | Adobe Flash Player Primetime SDK ShimContentResolver out of bounds memory access attempt | off | drop | drop |
1 | 39306 | FILE-FLASH | Adobe Flash Player sound object use-after-free attempt | off | drop | drop |
1 | 39307 | FILE-FLASH | Adobe Flash Player sound object use-after-free attempt | off | drop | drop |
1 | 39308 | FILE-FLASH | Adobe Flash Player malformed ATF file length load buffer overflow attempt | off | drop | drop |
1 | 39309 | FILE-FLASH | Adobe Flash Player malformed ATF file length load buffer overflow attempt | off | drop | drop |
1 | 39310 | FILE-FLASH | Adobe Flash Player same origin policy security bypass attempt | off | drop | drop |
1 | 39311 | FILE-FLASH | Adobe Flash Player same origin policy security bypass attempt | off | drop | drop |
1 | 39312 | FILE-FLASH | Adobe Flash Player malformed Adobe Texture Format image load memory corruption attempt | off | off | drop |
1 | 39313 | FILE-FLASH | Adobe Flash Player malformed Adobe Texture Format image load memory corruption attempt | off | off | drop |
1 | 39314 | FILE-FLASH | Adobe Flash Player RegExp numbered backreference out of bounds read attempt | off | off | drop |
1 | 39315 | FILE-FLASH | Adobe Flash Player RegExp numbered backreference out of bounds read attempt | off | off | drop |
1 | 39316 | FILE-FLASH | Adobe Flash Player MovieClip object use-after-free attempt | off | drop | drop |
1 | 39317 | FILE-FLASH | Adobe Flash Player MovieClip object use-after-free attempt | off | drop | drop |
1 | 39318 | FILE-FLASH | Adobe Flash Player ShimOpportunityGenerator out of bounds memory access attempt | off | drop | drop |
1 | 39319 | FILE-FLASH | Adobe Flash Player ShimOpportunityGenerator out of bounds memory access attempt | off | drop | drop |
Updated rules can be found at this link.