PT-2025-48199 · Open Information Security Foundation+2 · Suricata+2

Published

2025-11-05

·

Updated

2026-01-22

·

CVE-2025-64334

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Suricata versions 8.0.0 through 8.0.1
Description Suricata is a network IDS, IPS and NSM engine. Versions from 8.0.0 through 8.0.1 are susceptible to unbounded memory growth during decompression of compressed HTTP data. Disabling LZMA decompression or limiting the response-body-limit size can serve as a workaround.
Recommendations Update to version 8.0.2 or later. Disable LZMA decompression. Limit the response-body-limit size.

Exploit

Fix

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

ALT-PU-2025-14099
BDU:2025-15200
CVE-2025-64334
GHSA-R5JF-V2GX-GX8W
OPENSUSE-SU-2026:10082-1

Affected Products

Alt Linux
Debian
Suricata