Rule Update

20-009 (February 18, 2020)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

Mail Server Common
1010145* - OpenBSD OpenSMTPD Remote Command Execution Vulnerability (CVE-2020-7247)


Oracle E-Business Suite Web Interface
1010160 - Oracle E-Business Suite Human Resources SQL Injection Vulnerability (CVE-2020-2586)


Pivotal RabbitMQ HTTP Protocol
1010144 - Pivotal RabbitMQ X-Reason HTTP Header Denial Of Service Vulnerability (CVE-2019-11287)


Web Client Common
1010161 - Adobe Acrobat Pro DC XFA Form Use-After-Free Vulnerability (CVE-2019-8257)
1010154 - Foxit PhantomPDF HTML2PDF HTML Parsing Out-Of-Bounds Write Vulnerability (CVE-2019-17139)


Web Server Common
1010136 - ELOG Project ELOG NULL Pointer Dereference Vulnerability (CVE-2019-3995)
1000763* - URI Length And Depth Restriction


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.