Oisf

Suricata

45 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.06%
  • Veröffentlicht 01.10.2025 21:16:43
  • Zuletzt bearbeitet 06.10.2025 15:46:29

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Version 8.0.0's usage of the tls.subjectaltname keyword can lead to a segmentation fault when the decoded subjectal...

  • EPSS 0.01%
  • Veröffentlicht 01.10.2025 20:18:38
  • Zuletzt bearbeitet 06.10.2025 17:01:13

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In version 8.0.0, rules using keyword ldap.responses.attribute_type (which is long) with transforms can lead to a s...

  • EPSS 0.06%
  • Veröffentlicht 01.10.2025 20:18:38
  • Zuletzt bearbeitet 06.10.2025 16:59:50

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Versions 8.0.0 and below incorrectly handle the entropy keyword when not anchored to a "sticky" buffer, which can l...

  • EPSS 0.03%
  • Veröffentlicht 01.10.2025 20:18:38
  • Zuletzt bearbeitet 06.10.2025 16:59:06

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Versions 7.0.11 and below, as well as 8.0.0, are vulnerable to detection bypass when crafted traffic sends multiple...

  • EPSS 0.06%
  • Veröffentlicht 22.07.2025 21:36:03
  • Zuletzt bearbeitet 06.10.2025 15:48:18

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions 7.0.10 and below and 8.0.0-beta1 through 8.0.0-rc1, mishandling of data on HTTP2 stream 0 can lead to ...

  • EPSS 0.01%
  • Veröffentlicht 10.04.2025 21:02:32
  • Zuletzt bearbeitet 29.05.2025 15:49:18

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. A PCRE rule can be written that leads to an infinite loop when negated PCRE is used. Packet processing thread becomes stuck in infin...

  • EPSS 0.02%
  • Veröffentlicht 10.04.2025 21:00:05
  • Zuletzt bearbeitet 29.05.2025 15:48:51

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. The bytes setting in the decode_base64 keyword is not properly limited. Due to this, signatures using the keyword and setting can ca...

  • EPSS 0.03%
  • Veröffentlicht 10.04.2025 20:15:23
  • Zuletzt bearbeitet 29.05.2025 15:48:21

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Datasets declared in rules have an option to specify the `hashsize` to use. This size setting isn't properly limited, so the hash ta...

  • EPSS 0.02%
  • Veröffentlicht 10.04.2025 19:51:48
  • Zuletzt bearbeitet 29.05.2025 15:47:22

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. The AF_PACKET defrag option is enabled by default and allows AF_PACKET to re-assemble fragmented packets before reaching Suricata. H...

  • EPSS 0.16%
  • Veröffentlicht 06.01.2025 18:15:23
  • Zuletzt bearbeitet 31.03.2025 12:54:16

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, TCP streams with TCP urgent data (out of band data) can lead to Suricata analyzing data differently than the applica...