PROTOCOL-RPC -- Snort has detected traffic that may indicate the presence of the rpc protocol or vulnerabilities in the rpc protocol on the network.
PROTOCOL-RPC FreeBSD NFS RPCSEC_GSS stack buffer overflow attempt
This rule looks for a malformed RPCSEC_GSS authentication packet sent to a vulnerable FreeBSD system.
This rule looks for attempts to exploit a buffer overflow vulnerability in the RPCSEC_GSS authentication of the kgssapi.ko module in FreeBSD systems.
Attacks/Scans seen in the wild
No known false positives
Cisco Talos Intelligence Group
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
Rule Categories::Protocol::RPC
Vulnerability::Severity::High
Vulnerability::Severity::Critical
Memory Corruption
Memory Corruption is any vulnerability that allows the modification of the content of memory locations in a way not intended by the developer. Memory corruption results are inconsistent; they could lead to fatal errors and system crashes or data leakage; some have no effect at all.
CVE-2026-4747 |
Loading description
|