ET EXPLOIT Bloomberg Comdb2 Distributed Transaction Heartbeat Operation DoS (CVE-2025-46354)
Sourceet/open
CreatedJuly 31, 2025
UpdatedJuly 31, 2025
Classificationattempted-dos
alert tcp any any -> $HOME_NET 19000 (msg:"ET EXPLOIT Bloomberg Comdb2 Distributed Transaction Heartbeat Operation DoS (CVE-2025-46354)"; flow:established,to_server; content:"|00 00 00 01|"; fast_pattern; startswith; byte_extract:1,15,data_len; isdataat:data_len; content:"|0a|"; distance:2; within:1; content:"|08 01|"; distance:0; threshold:type threshold, track by_src, count 10, seconds 60; reference:url,talosintelligence.com/vulnerability_reports/TALOS-2025-2200; reference:cve,2025-46354; classtype:attempted-dos; sid:2063843; rev:1; metadata:attack_target Networking_Equipment, created_at 2025_07_31, cve CVE_2025_46354, deployment Perimeter, deployment Internal, performance_impact Significant, confidence Medium, signature_severity Major, updated_at 2025_07_31; target:dest_ip;)
Metadata
attack targetNetworking_Equipment
created at2025_07_31
deploymentInternal
performance impactSignificant
confidenceMedium
signature severityMajor
updated at2025_07_31
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!