Stack-based buffer overflow in Suricata - CVE-2024-55605
Published: January 10, 2025
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error in multiple transforms. A remote attacker can send very large packets to the application, trigger a stack-based buffer overflow and perform a denial of service (DoS) attack.
Below is the list of affected transforms:
- to_lowercase
- to_uppercase
- strip_whitespace
- compress_whitespace
- dotprefix
- header_lowercase
- strip_pseudo_headers
- url_decode
- xor
Affected software
Kaspersky Anti Targeted Attack
Fedora
suricata
How to mitigate CVE-2024-55605
Kaspersky Anti Targeted Attack - addressed in versions 6.0.4, 7.0.3
suricata - addressed in versions 7.0.8-1.el8, 7.0.8-1.el9, 7.0.8-1.fc40, 7.0.8-1.fc41