Loading
preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by using a different TTL for each fragment.
Use Snort vendor hub and Snort product page to widen CVE-2008-1804 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2016-1417, CVE-2021-1223 and CVE-2007-1398 for nearby disclosures in the same product family.