216.73.217.22

CVE-2024-55628

· Published 06/01/2025 18:15 · Modified 31/03/2025 13:02

Labels: CVE-2024-55628 2025-01-06CVE-2024-55628CWE-405NVD-CWE-Other[email protected]

Essential information

Published
06/01/2025 18:15
Modified
31/03/2025 13:02
Author
Creator
CVSS
7.5 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CVSS metrics

Description

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.8, DNS resource name compression can lead to small DNS messages containing very large hostnames which can be costly to decode, and lead to very large DNS log records. While there are limits in place, they were too generous. The issue has been addressed in Suricata 7.0.8.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
oisf / suricata cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:*

References