CoTURN contains denial-of-service and memory corruption vulnerabilities in the way its web server parses POST requests. The software includes a web server for administration purposes, which is where these two vulnerabilities exist. An attacker needs to send an HTTPS request to trigger this vulnerability. The following SNORT rules will detect exploitation attempts. The following rules may be released at a future date and current rules are subject to change pending additional vulnerability information. For the most current rules, please refer to your Firepower Management Center or Snort.org.”]
Source: https://blog.talosintelligence.com/2020/02/vuln-spotlight-coturn-DoS-memory-feb-2020.html

