CNNVD-202511-2828 Information

CNNVD ID

CNNVD-202511-2828

CVE-2025-64332

  • CNNVD Published: 2025-11-26

Description (Chinese)

Suricata是Open Information Security基金会的一个网络IDS、IPS和NSM引擎。 Suricata 7.0.13之前版本和8.0.2之前版本存在安全漏洞,该漏洞源于启用SWF解压缩时存在栈溢出,可能导致崩溃。

Description (English)

Suricata is a web-based IDS, IPS and NSM engine of the Open Information Security Foundation. Suricata before 7.0.13 and before 8.0.2, there was a security loophole, which stemmed from the spill that could lead to a collapse when SWF compression was activated.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Open Information Security

Published

2025-11-26

Last Modified

2026-02-24

References

https://github.com/OISF/suricata/commit/ad446c9006a77490af51c468aae0ce934f4d2117 https://github.com/OISF/suricata/security/advisories/GHSA-p32q-7wcp-gv92

Patch

https://github.com/OISF/suricata/releases

Share on: