Oisf

Suricata

59 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.06%
  • Veröffentlicht 10.04.2025 21:00:05
  • Zuletzt bearbeitet 29.05.2025 15:48:51

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. The bytes setting in the decode_base64 keyword is not properly limited. Due to this, signatures using the keyword and setting can ca...

  • EPSS 0.06%
  • Veröffentlicht 10.04.2025 20:15:23
  • Zuletzt bearbeitet 29.05.2025 15:48:21

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Datasets declared in rules have an option to specify the `hashsize` to use. This size setting isn't properly limited, so the hash ta...

  • EPSS 0.14%
  • Veröffentlicht 10.04.2025 19:51:48
  • Zuletzt bearbeitet 29.05.2025 15:47:22

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. The AF_PACKET defrag option is enabled by default and allows AF_PACKET to re-assemble fragmented packets before reaching Suricata. H...

  • EPSS 0.3%
  • Veröffentlicht 06.01.2025 18:15:23
  • Zuletzt bearbeitet 31.03.2025 12:54:16

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, TCP streams with TCP urgent data (out of band data) can lead to Suricata analyzing data differently than the applica...

  • EPSS 0.41%
  • Veröffentlicht 06.01.2025 18:15:22
  • Zuletzt bearbeitet 31.03.2025 13:02:25

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.8, DNS resource name compression can lead to small DNS messages containing very large hostnames which can be co...

  • EPSS 0.11%
  • Veröffentlicht 06.01.2025 18:15:22
  • Zuletzt bearbeitet 31.03.2025 13:40:33

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a specially crafted TCP stream can lead to a very large buffer overflow while being zero-filled during initializatio...

  • EPSS 0.15%
  • Veröffentlicht 06.01.2025 18:15:22
  • Zuletzt bearbeitet 03.11.2025 20:16:50

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a large BPF filter file provided to Suricata at startup can lead to a buffer overflow at Suricata startup. The issue...

  • EPSS 0.32%
  • Veröffentlicht 06.01.2025 17:15:39
  • Zuletzt bearbeitet 31.03.2025 13:53:42

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a large input buffer to the to_lowercase, to_uppercase, strip_whitespace, compress_whitespace, dotprefix, header_low...

  • EPSS 0.81%
  • Veröffentlicht 16.10.2024 20:15:06
  • Zuletzt bearbeitet 25.09.2025 17:15:37

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, invalid ALPN in TLS/QUIC traffic when JA4 matching/logging is enabled can lead to Suricata aborting with a p...

  • EPSS 0.12%
  • Veröffentlicht 16.10.2024 19:15:27
  • Zuletzt bearbeitet 22.10.2024 13:50:17

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, missing initialization of the random seed for "thash" leads to byte-range tracking having predictable hash t...