PT-2024-10007 · Suricata+2 · Suricata+2

Simen Lybekk

·

Published

2024-12-12

·

Updated

2025-11-07

·

CVE-2024-55605

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Suricata versions prior to 7.0.8
Description The issue is related to a stack overflow caused by a large input buffer to certain transform functions, including to lowercase, to uppercase, strip whitespace, compress whitespace, dotprefix, header lowercase, strip pseudo headers, url decode, or xor. This can lead to Suricata crashing. The problem has been addressed in Suricata 7.0.8.
Recommendations For Suricata versions prior to 7.0.8, update to Suricata 7.0.8 to resolve the issue. As a temporary workaround, consider restricting the input buffer size to the transform functions to minimize the risk of exploitation.

Exploit

Fix

Resource Exhaustion

Memory Corruption

Stack Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2025-14099
BDU:2025-00134
CVE-2024-55605
GHSA-X2HR-33VP-W289
OPENSUSE-SU-2025:15394-1

Affected Products

Alt Linux
Debian
Suricata