PT-2025-48206 · Open Information Security Foundation+2 · Suricata+2
Published
2025-11-06
·
Updated
2026-01-22
·
CVE-2025-64333
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Suricata versions prior to 7.0.13
Suricata versions prior to 8.0.2
Description
Suricata is a network IDS, IPS and NSM engine. A large HTTP content type, when logged, can cause a stack overflow, potentially crashing Suricata.
Recommendations
Update to Suricata version 7.0.13 or later.
Update to Suricata version 8.0.2 or later.
As a workaround, limit
stream.reassembly.depth to less than half the stack size.
Increase the process stack size to reduce the likelihood of the issue triggering.Exploit
Fix
Memory Corruption
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Debian
Suricata