<div>Hi Everyone,</div><div><br></div><div>I just got a core dump with Suricata during testing. I have attached the backtrace and I have a core file, but it's 11GB! :o)</div><div><br></div><div>I'm using the latest development version, and am running on RHEL 5.7 with a DAG 7.5G4. I only have one rule enabled, and Suricata's snarfing files like crazy (good thing).</div>
<div><br></div><div>alert http any any -> any any (msg: "EXE Detected over HTTP 1"; filemagic:"executable for MS Windows"; fileext:"exe"; filestore; sid: 2000000; rev:1;)</div><div><br></div>
<div>I'm sure I'm missing something, but please let me know if you need additional data. Anything you want me to do with the core file, just let me know.</div><div><br></div><div>Thanks!</div><div><br></div><div>
marcos</div>