CVE-2024-55627

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a specially crafted TCP stream can lead to a very large buffer overflow while being zero-filled during initialization with memset due to an unsigned integer underflow. The issue has been addressed in Suricata 7.0.8.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:*

History

31 Mar 2025, 13:40

Type Values Removed Values Added
Summary
  • (es) Suricata es un sistema de detección de intrusiones, un sistema de prevención de intrusiones y un motor de monitoreo de seguridad de red. Antes de la versión 7.0.8, un flujo TCP especialmente manipulado puede provocar un desbordamiento de búfer muy grande mientras se llena con ceros durante la inicialización con memset debido a un desbordamiento de enteros sin signo. El problema se ha solucionado en Suricata 7.0.8.
CWE CWE-787
First Time Oisf
Oisf suricata
CPE cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:*
References () https://github.com/OISF/suricata/commit/282509f70c4ce805098e59535af445362e3e9ebd - () https://github.com/OISF/suricata/commit/282509f70c4ce805098e59535af445362e3e9ebd - Patch
References () https://github.com/OISF/suricata/commit/8900041405dbb5f9584edae994af2100733fb4be - () https://github.com/OISF/suricata/commit/8900041405dbb5f9584edae994af2100733fb4be - Patch
References () https://github.com/OISF/suricata/commit/9a53ec43b13f0039a083950511a18bf6f408e432 - () https://github.com/OISF/suricata/commit/9a53ec43b13f0039a083950511a18bf6f408e432 - Patch
References () https://github.com/OISF/suricata/security/advisories/GHSA-h2mv-7gg8-8x7v - () https://github.com/OISF/suricata/security/advisories/GHSA-h2mv-7gg8-8x7v - Vendor Advisory
References () https://redmine.openinfosecfoundation.org/issues/7393 - () https://redmine.openinfosecfoundation.org/issues/7393 - Permissions Required

06 Jan 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-01-06 18:15

Updated : 2025-03-31 13:40


NVD link : CVE-2024-55627

Mitre link : CVE-2024-55627

CVE.ORG link : CVE-2024-55627


JSON object : View

Products Affected

oisf

  • suricata
CWE
CWE-122

Heap-based Buffer Overflow

CWE-191

Integer Underflow (Wrap or Wraparound)

CWE-787

Out-of-bounds Write