CVE-2024-55628

HIGH

Suricata <7.0.8 - Info Disclosure

Title source: llm
STIX 2.1

Description

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.8, DNS resource name compression can lead to small DNS messages containing very large hostnames which can be costly to decode, and lead to very large DNS log records. While there are limits in place, they were too generous. The issue has been addressed in Suricata 7.0.8.

Scores

CVSS v3 7.5
EPSS 0.0054
EPSS Percentile 67.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-779 CWE-405
Status published
Products (1)
oisf/suricata < 7.0.8
Published Jan 06, 2025
Tracked Since Feb 18, 2026