CVE-2024-55626 Details
Description
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.8, a large BPF filter file provided to Suricata at startup can lead to a buffer overflow at Suricata startup. The issue has been addressed in Suricata 7.0.8.
A buffer overflow vulnerability has been identified in Suricata, a network intrusion detection and prevention system, prior to version 7.0.8. The issue arises when a large Berkeley Packet Filter (BPF) file is provided to Suricata at startup, leading to a buffer overflow condition. This vulnerability requires user interaction, as it involves the use of untrusted files with the 'suricata -F' command line option.
Users can upgrade to Suricata version 7.0.8 or later to address this vulnerability. It is also recommended not to use untrusted files with the 'suricata -F' command line option.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jan 6, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-680 | Integer Overflow to Buffer Overflow | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| oisf suricata | < 7.0.8 |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 3, 2025 | CVE Modified | CVE |
| Mar 31, 2025 | Initial Analysis | [email protected] |
| Jan 6, 2025 | New CVE Received | [email protected] |