Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

suricata — Vulnerabilities & Security Advisories 53

All 53 CVE vulnerabilities found in suricata, with AI-generated Chinese analysis, references, and POCs.

This page serves as a centralized aggregation hub for known vulnerabilities affecting the Suricata intrusion detection and prevention system, categorizing security weaknesses by their specific types and associated tags. It compiles a comprehensive dataset of flaw reports spanning from the initial public disclosure of early security issues up to the most recently published alerts, ensuring that users have access to a historical and current view of the threat landscape. By utilizing this resource, analysts and administrators can efficiently track vendor advisories related to Suricata to stay informed about critical patches and configuration changes. Users can also gain a deeper understanding of specific weakness classes, such as buffer overflows or logic errors, by examining how they manifest within this particular network security appliance. Furthermore, the page enables detailed investigation into a product’s vulnerability history, allowing teams to assess long-term security trends and prioritize remediation efforts based on risk severity and exploitability. This structured approach supports proactive security management by providing clear visibility into past incidents and ongoing threats, helping organizations maintain the integrity and resilience of their network monitoring infrastructure against evolving cyber risks.

Vendor: Open Information Security Foundation

CVE IDTitleCVSSSeverityPublished
CVE-2024-55628 Suricata oversized resource names utilizing DNS name compression can lead to resource starvation CWE-405 7.5 High2025-01-06
CVE-2024-55627 Suricata segfault on StreamingBufferSlideToOffsetWithRegions CWE-191 5.9 Medium2025-01-06
CVE-2024-55626 Suricata oversized bpf file can lead to buffer overflow CWE-680 3.3 Low2025-01-06
CVE-2024-55605 Suricata allows stack overflow in transforms CWE-400 7.5 High2025-01-06
CVE-2024-47522 Suricata ja4: invalid alpn leads to panic CWE-617 7.5 High2024-10-16
CVE-2024-47188 Suricata http/byte-ranges: missing hashtable random seed leads to potential DoS CWE-330 7.5 High2024-10-16
CVE-2024-47187 Suricata datasets: missing hashtable random seed leads to potential DoS CWE-330 7.5 High2024-10-16
CVE-2024-45796 Suricata defrag: off by one can lead to policy bypass CWE-193 5.3 Medium2024-10-16
CVE-2024-45795 Suricata detect/datasets: reachable assertion with unimplemented rule option CWE-617 7.5 High2024-10-16
CVE-2024-38536 Suricata http/range: NULL-ptr deref when http.memcap is reached CWE-476 7.5 High2024-07-11
CVE-2024-38535 Suricata http2: oom from duplicate headers CWE-770 7.5 High2024-07-11
CVE-2024-38534 Suricata modbus: txs without responses are never freed CWE-770 7.5 High2024-07-11
CVE-2024-37151 Suricata defrag: IP ID reuse can lead to policy bypass CWE-754 5.3 Medium2024-07-11
CVE-2024-32867 Suricata's defrag contains various issues leading to policy bypass CWE-754 5.3 Medium2024-05-07
CVE-2024-32664 Suricata's base64 contains an out of bounds write CWE-122 5.3 Medium2024-05-07
CVE-2024-32663 Suricata 's http2 parser contains an improper compressed header handling can lead to resource starvation CWE-400 7.5 High2024-05-07
CVE-2024-28870 Suricata uses excessive resource use in malformed ssh traffic parsing CWE-770 7.5 High2024-04-03
CVE-2024-24568 Suricata http2: header handling evasion CWE-284 5.3 Medium2024-02-26
CVE-2024-23839 Suricata http: heap use after free with http.request_header and http.response_header keywords CWE-416 7.1 High2024-02-26
CVE-2024-23836 crafted traffic can cause denial of service CWE-770 7.5 High2024-02-26
CVE-2024-23835 Suricata's pgsql: memory exhaustion use on record parsing CWE-400 7.5 High2024-02-26
CVE-2019-1010279 Open Information Security Foundation Suricata 数据伪造问题漏洞 7.5 -2019-07-18
CVE-2019-1010251 Open Information Security Foundation Suricata 输入验证错误漏洞 7.5 -2019-07-18

All 53 known CVE vulnerabilities affecting suricata with full Chinese analysis, references, and POCs where available.