Allocation of Resources Without Limits or Throttling in Suricata - CVE-2024-28870
Published: April 2, 2024 / Updated: April 27, 2026
Suricata
Open Information Security Foundation
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to allocation of resources without limits or throttling in the ssh traffic parser when parsing an overly long SSH banner. A remote attacker can send a specially crafted SSH banner to cause a denial of service.
The issue can also cause excessive logging volume in alert records.