Snort mailing list archives

Snort Subscriber Rules Update 2021-12-21


From: Research <research () sourcefire com>
Date: Tue, 21 Dec 2021 16:01:51 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Talos Snort Subscriber Rules Update

Synopsis:
This release adds and modifies rules in several categories.

Details:
Talos is releasing updates to Snort SIDs: 58722-58744, 58751,
58784-58790, 58795, 58801, 58811-58814 to address
CVE-2021-44228/CVE-2021-45046/CVE-2021-45105, an RCE vulnerability in
the Apache Log4j API.

Talos has added and modified multiple rules in the file-executable,
file-pdf, indicator-compromise, policy-other and server-webapp rule
sets to provide coverage for emerging threats from these technologies.


For a complete list of new and modified rules please see:

https://www.snort.org/advisories
-----BEGIN PGP SIGNATURE-----

iQIcBAEBAgAGBQJhwfpsAAoJEGCbAk8rPt0HIkMP/1FTE7mvRCsUdSvCwO9fbNpM
/NRP1TXyhvjp0VVXha+O9tSenzF646LV6D263tAN4yVgjy5mvaBtjWDr1EOpdJkN
OYJHvuAzsG2qMDkX1yXTtYLycVsUYyA4Ckmvb1N5/MM4/12eXzyYv28sRYuKyl+h
FS5/pU1x/nadOkZ7lBOlsNfSan/1Hl9dz7wSCt0hI1HvXzIEIHvCs6DD2p70DcCV
T5LxlsLU0i/ex10gWrAhYZmZBJLUZ03ha3Er1GMy18oucSYumQSaBL2+eB++MM1o
sUF4KWNjZc67pJl7kHRG8XRtvUOYMvJClPnUBjFWni26GCkH9mKitUdd0x9PNgKp
Y5G+lKKfUw4TeGaJwgyNT9kt1Ghg8c6oDKWSB9gpbKPbT9jJuHGmBFjb49mml5Nq
MlyAK+IotFugjb06eqdYZ9Nj/4/ylLQPB2K2ZV3uC4i/ny2lbl9lLcFGqekQrEq7
o/eIb7qE4TeiswLYBPKiAPC96h/7qQUfyXeCBzaCW/ITl9rFFoaO5kDNQACPGSlL
9RDPfW8o2prZoITScT1WPkAd31ql00wQp1YEy9II+OlEpO8F4u05RRjM/PfogvNm
wzXjfaJGzlldUn7HRH3W8sppcFgyZ1jjo8gqNuM/DUo9GezhMzLFsV0lzzuKlXUm
sFAJrSsp2lPb/AJtj5US
=wSUO
-----END PGP SIGNATURE-----

_______________________________________________
Snort-sigs mailing list
Snort-sigs () lists snort org
https://lists.snort.org/mailman/listinfo/snort-sigs

Please visit http://blog.snort.org for the latest news about Snort!

Please follow these rules: https://snort.org/faq/what-is-the-mailing-list-etiquette

Visit the Snort.org to subscribe to the official Snort ruleset, make sure to stay up to date to catch the most <a 
href=" https://snort.org/downloads/#rule-downloads";>emerging threats</a>!


Current thread: