CVE-2024-45796

MEDIUM

Suricata <7.0.7 - Logic Error

Title source: llm
STIX 2.1

Description

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, a logic error during fragment reassembly can lead to failed reassembly for valid traffic. An attacker could craft packets to trigger this behavior.This issue has been addressed in 7.0.7.

Scores

CVSS v3 5.3
EPSS 0.0031
EPSS Percentile 54.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-193
Status published
Products (2)
oisf/suricata < 7.0.7
OISF/suricata < 7.0.7
Published Oct 16, 2024
Tracked Since Feb 18, 2026