Search CVE reports


Toggle filters

1 – 10 of 55 results


CVE-2024-55629

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, TCP streams with TCP urgent data (out of band data) can lead to Suricata analyzing...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-55628

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.8, DNS resource name compression can lead to small DNS messages containing very large...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-55627

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a specially crafted TCP stream can lead to a very large buffer overflow while being zero-filled...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-55626

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a large BPF filter file provided to Suricata at startup can lead to a buffer overflow at...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-55605

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a large input buffer to the to_lowercase, to_uppercase, strip_whitespace, compress_whitespace,...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-47522

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, invalid ALPN in TLS/QUIC traffic when JA4 matching/logging is enabled can lead to...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-47188

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, missing initialization of the random seed for "thash" leads to byte-range tracking...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-47187

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, missing initialization of the random seed for "thash" leads to datasets having...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-45796

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, a logic error during fragment reassembly can lead to failed reassembly for valid...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages

CVE-2024-45795

Medium priority
Needs evaluation

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, rules using datasets with the non-functional / unimplemented "unset" option can trigger...

1 affected package

suricata

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
suricata Needs evaluation Needs evaluation Not in release Needs evaluation Needs evaluation
Show less packages