PT-2025-48206 · Open Information Security Foundation+2 · Suricata+2

Published

2025-11-06

·

Updated

2026-01-22

·

CVE-2025-64333

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Suricata versions prior to 7.0.13 Suricata versions prior to 8.0.2
Description Suricata is a network IDS, IPS and NSM engine. A large HTTP content type, when logged, can cause a stack overflow, potentially crashing Suricata.
Recommendations Update to Suricata version 7.0.13 or later. Update to Suricata version 8.0.2 or later. As a workaround, limit stream.reassembly.depth to less than half the stack size. Increase the process stack size to reduce the likelihood of the issue triggering.

Exploit

Fix

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2025-14099
BDU:2025-15195
CVE-2025-64333
GHSA-537H-XXMX-V87M
OPENSUSE-SU-2026:10082-1

Affected Products

Alt Linux
Debian
Suricata