Previous Topic: Denial of Service ActionNext Topic: Denial of Service Attack Action


Buffer Overflow Attack Action

The Buffer Overflow Attack action deals with the expression of event information pertaining to the detection of Buffer overflow attacks on a host.

If the attack does not lead to Denial of Service then map to the same action in the the Host Security category and Application Security class. If the event is in the context of a network environment, then map to the same action in the Network Security category.

Information

Level

Source - User Information

Tertiary

Source - Host Information

Tertiary

Source - Object Information

Tertiary

Source - Process Information

Tertiary

Source - Group Information

Tertiary

Dest - User Information

Tertiary

Dest - Host Information

Primary

Dest - Object Information

Primary

Dest - Group Information

Tertiary

Agent - Information

Primary

Agent - Host Information

Primary

Event Source - Host Information

Primary

Event Source - Information

Tertiary

Event - Information

Primary

Result - Information

Primary

Result

event_result

event_severity

Success

S

6

Failure

F

5