CVE-2024-45796
MEDIUMSuricata <7.0.7 - Logic Error
Title source: llmDescription
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.7, a logic error during fragment reassembly can lead to failed reassembly for valid traffic. An attacker could craft packets to trigger this behavior.This issue has been addressed in 7.0.7.
Scores
CVSS v3
5.3
EPSS
0.0026
EPSS Percentile
49.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Classification
CWE
CWE-193
Status
published
Affected Products (1)
oisf/suricata
< 7.0.7
Timeline
Published
Oct 16, 2024
Tracked Since
Feb 18, 2026