Unrated severityNVD Advisory· Published May 7, 2024· Updated Aug 2, 2024
Suricata's defrag contains various issues leading to policy bypass
CVE-2024-32867
Description
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.5 and 6.0.19, various problems in handling of fragmentation anomalies can lead to mis-detection of rules and policy. This vulnerability is fixed in 7.0.5 or 6.0.19.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- github.com/OISF/suricata/commit/1e110d0a71db46571040b937e17a4bc9f91d6de9mitrex_refsource_MISC
- github.com/OISF/suricata/commit/2f39ba75f153ba9bdf8eedc2a839cc973dbaea66mitrex_refsource_MISC
- github.com/OISF/suricata/commit/414f97c6695c5a2e1d378a36a6f50d7288767634mitrex_refsource_MISC
- github.com/OISF/suricata/commit/bf3d420fb709ebe074019a99e3bd3a2364524a4bmitrex_refsource_MISC
- github.com/OISF/suricata/commit/d13bd2ae217a6d2ceb347f74d27cbfcd37b9bda9mitrex_refsource_MISC
- github.com/OISF/suricata/commit/e6267758ed5da27f804f0c1c07f9423bdf4d72b8mitrex_refsource_MISC
- github.com/OISF/suricata/security/advisories/GHSA-xvrx-88mv-xcq5mitrex_refsource_CONFIRM
- redmine.openinfosecfoundation.org/issues/6672mitrex_refsource_MISC
- redmine.openinfosecfoundation.org/issues/6673mitrex_refsource_MISC
- redmine.openinfosecfoundation.org/issues/6677mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.