{"api_version":"1","generated_at":"2026-04-23T09:37:58+00:00","cve":"CVE-2006-0839","urls":{"html":"https://cve.report/CVE-2006-0839","api":"https://cve.report/api/cve/CVE-2006-0839.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2006-0839","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2006-0839"},"summary":{"title":"CVE-2006-0839","description":"The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths.","state":"PUBLISHED","assigner":"mitre","published_at":"2006-02-22 02:02:00","updated_at":"2025-04-03 01:03:51"},"problem_types":["NVD-CWE-Other","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"5","severity":"","vector":"AV:N/AC:L/Au:N/C:N/I:P/A:N","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"}}],"references":[{"url":"http://www.securityfocus.com/archive/1/425290/100/0/threaded","name":"http://www.securityfocus.com/archive/1/425290/100/0/threaded","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"SecurityFocus","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/16705","name":"http://www.securityfocus.com/bid/16705","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Snort Frag3 Processor Fragmented Packet Detection Evasion Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24811","name":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24811","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"IBM X-Force Exchange","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/18959","name":"http://secunia.com/advisories/18959","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Snort frag3 Preprocessor Packet Reassembly Vulnerability - Advisories - Secunia","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2006-0839","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2006-0839","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2006","cve_id":"839","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"sourcefire","cpe5":"snort","cpe6":"2.4.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":{"cve_year":"2006","cve_id":"839","cve":"CVE-2006-0839","epss":"0.003920000","percentile":"0.602400000","score_date":"2026-04-16","updated_at":"2026-04-17 00:09:25"},"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-07T16:48:56.548Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"20060217 SNORT Incorrect fragmented packet reassembly","tags":["mailing-list","x_refsource_BUGTRAQ","x_transferred"],"url":"http://www.securityfocus.com/archive/1/425290/100/0/threaded"},{"name":"16705","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/16705"},{"name":"18959","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/18959"},{"name":"snort-frag3-detection-bypass(24811)","tags":["vdb-entry","x_refsource_XF","x_transferred"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24811"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2006-02-17T00:00:00.000Z","descriptions":[{"lang":"en","value":"The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2018-10-18T14:57:01.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"20060217 SNORT Incorrect fragmented packet reassembly","tags":["mailing-list","x_refsource_BUGTRAQ"],"url":"http://www.securityfocus.com/archive/1/425290/100/0/threaded"},{"name":"16705","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/16705"},{"name":"18959","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/18959"},{"name":"snort-frag3-detection-bypass(24811)","tags":["vdb-entry","x_refsource_XF"],"url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24811"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-0839","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"20060217 SNORT Incorrect fragmented packet reassembly","refsource":"BUGTRAQ","url":"http://www.securityfocus.com/archive/1/425290/100/0/threaded"},{"name":"16705","refsource":"BID","url":"http://www.securityfocus.com/bid/16705"},{"name":"18959","refsource":"SECUNIA","url":"http://secunia.com/advisories/18959"},{"name":"snort-frag3-detection-bypass(24811)","refsource":"XF","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/24811"}]}}}},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2006-0839","datePublished":"2006-02-22T02:00:00.000Z","dateReserved":"2006-02-22T00:00:00.000Z","dateUpdated":"2024-08-07T16:48:56.548Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2006-02-22 02:02:00","lastModifiedDate":"2025-04-03 01:03:51","problem_types":["NVD-CWE-Other","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:N/I:P/A:N","baseScore":5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"MEDIUM","exploitabilityScore":10,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:sourcefire:snort:2.4.3:*:*:*:*:*:*:*","matchCriteriaId":"660AF80B-1512-4CD0-89B2-93658C0A12B2"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2006","CveId":"839","Ordinal":"1","Title":"CVE-2006-0839","CVE":"CVE-2006-0839","Year":"2006"},"notes":[{"CveYear":"2006","CveId":"839","Ordinal":"1","NoteData":"The frag3 preprocessor in Sourcefire Snort 2.4.3 does not properly reassemble certain fragmented packets with IP options, which allows remote attackers to evade detection of certain attacks, possibly related to IP option lengths.","Type":"Description","Title":"CVE-2006-0839"},{"CveYear":"2006","CveId":"839","Ordinal":"2","NoteData":"2006-02-21","Type":"Other","Title":"Published"},{"CveYear":"2006","CveId":"839","Ordinal":"3","NoteData":"2018-10-18","Type":"Other","Title":"Modified"}]}}}