PT-2025-48203 · Open Information Security Foundation+2 · Suricata+2

CVE-2025-64330

·

Publicado

2025-11-07

·

Atualizado

2026-01-22

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Suricata versions prior to 7.0.13 Suricata versions prior to 8.0.2
Description Suricata is a network IDS, IPS and NSM engine. A heap overflow can occur when logging verdict information in eve.alert and eve.drop records for versions prior to 7.0.13 and 8.0.2. This requires the per packet alert queue to be filled with alerts followed by a pass rule, potentially leading to crashes. The issue is related to a single byte read during logging. Increasing the alert queue size (packet-alert-max in suricata.yaml) can reduce the likelihood of this issue occurring.
Recommendations Update to Suricata version 7.0.13 or later. Update to Suricata version 8.0.2 or later. Increase the alert queue size (packet-alert-max) in the suricata.yaml configuration file.

Exploit

Correção

Buffer Overflow

Memory Corruption

Heap Based Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2025-14099
BDU:2025-14771
CVE-2025-64330
GHSA-83V7-GM34-F437
OPENSUSE-SU-2026:10082-1

Produtos afetados

Alt Linux
Debian
Suricata