Rule

--
Sid
116-271

--
Summary:
This event is generated when the snort decode preprocessor detects anomalous network traffic.

--
Impact:
Unknown. This is an indication of anomalous behaviour between networked assets.

--
Detailed Information:
This event is generated when the snort decode preprocessor detects anomalous network traffic.

IPv6 header claims to not be IPv6.

This event can be controlled using the ((snort decode)) configuration options.

--
Affected Systems:


--
Attack Scenarios:


--
Ease of Attack:
Simple.

--
False Positives:
None known.

--
False Negatives:
None known.

--
Corrective Action:


--
Contributors:
Sourcefire Vulnerability Research Team


--
Additional References:


--
