PT-2025-48207 · Open Information Security Foundation+2 · Suricata+2

Published

2025-10-30

·

Updated

2026-01-22

·

CVE-2025-64344

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Suricata versions prior to 7.0.13 Suricata versions prior to 8.0.2
Description Suricata is a network IDS, IPS and NSM engine. Processing large buffers in Lua scripts before versions 7.0.13 and 8.0.2 can lead to a stack overflow. Users utilizing Lua rules and output scripts are potentially affected when handling large buffers, including scenarios where a rule passes a large buffer to a Lua script.
Recommendations Update to Suricata version 7.0.13 or later. Update to Suricata version 8.0.2 or later. Disable Lua rules and output scripts. Set limits, such as stream.depth.reassembly and response-body-limit, to less than half the stack size.

Exploit

Fix

Memory Corruption

Stack Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2025-14099
BDU:2025-15125
CVE-2025-64344
GHSA-93FH-CGMC-W3RX
OPENSUSE-SU-2026:10082-1

Affected Products

Alt Linux
Debian
Suricata