CVE-2024-45796

MEDIUM

Suricata <7.0.7 - Logic Error

Title source: llm

Description

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, a logic error during fragment reassembly can lead to failed reassembly for valid traffic. An attacker could craft packets to trigger this behavior.This issue has been addressed in 7.0.7.

Scores

CVSS v3 5.3
EPSS 0.0026
EPSS Percentile 49.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

Classification

CWE
CWE-193
Status published

Affected Products (1)

oisf/suricata < 7.0.7

Timeline

Published Oct 16, 2024
Tracked Since Feb 18, 2026