Buffer overflow in Suricata - CVE-2024-55626
Published: January 10, 2025
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error when handling very large BPF filter file during startup. A remote attacker can trick the victim into providing a specially crafted BPF file to the application, trigger memory corruption and perform a denial of service (DoS) attack.
Affected software
Fedora
suricata
How to mitigate CVE-2024-55626
suricata - addressed in versions 7.0.8-1.el8, 7.0.8-1.el9, 7.0.8-1.fc40, 7.0.8-1.fc41