Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-31931

Опубликовано: 02 апр. 2026
Источник: debian

Описание

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, use of the "tls.alpn" rule keyword can cause Suricata to crash with a NULL dereference. This issue has been patched in version 8.0.4.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
suricatafixed1:8.0.4-1package
suricatanot-affectedtrixiepackage
suricatanot-affectedbullseyepackage

Примечания

  • https://github.com/OISF/suricata/security/advisories/GHSA-gr22-4784-xvw3

  • https://redmine.openinfosecfoundation.org/issues/8297

  • Fixed by: https://github.com/OISF/suricata/commit/632acbe74cb187a292a25945835a99a65311dd57 (suricata-8.0.4)

  • Introduced by: https://github.com/OISF/suricata/commit/6c1238b7bd0943054cf3eef1128ba1f02418238f (suricata-8.0.0-rc1)

Связанные уязвимости

CVSS3: 7.5
ubuntu
4 месяца назад

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, use of the "tls.alpn" rule keyword can cause Suricata to crash with a NULL dereference. This issue has been patched in version 8.0.4.

CVSS3: 7.5
redhat
4 месяца назад

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, use of the "tls.alpn" rule keyword can cause Suricata to crash with a NULL dereference. This issue has been patched in version 8.0.4.

CVSS3: 7.5
nvd
4 месяца назад

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, use of the "tls.alpn" rule keyword can cause Suricata to crash with a NULL dereference. This issue has been patched in version 8.0.4.

CVSS3: 7.5
fstec
4 месяца назад

Уязвимость системы обнаружения и предотвращения вторжений Suricata, связанная с разыменованием указателей, позволяющая нарушителю вызвать отказ в обслуживании