Suricata是Open Information Security基金会的一个网络IDS、IPS和NSM引擎。 Suricata 7.0.11及之前版本和8.0.0版本存在安全特征问题漏洞,该漏洞源于处理特制流量时未能正确识别TCP会话,可能导致检测绕过。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-59148 | 7.5 HIGH | Suricata's improper use of entropy keyword can lead to a NULL-ptr deref |
| CVE-2025-59150 | 7.5 HIGH | Suricata: Keyword tls.subjectaltname can lead to NULL-ptr deref |
| CVE-2025-59149 | 6.2 MEDIUM | Suricata: Stack buffer overflow in rule parser when processing long keywords with transfor |
No comments yet