OISF Suricata
cpe:2.3:a:openinfosecfoundation:suricata:*:*:*:*:*:*:*
- < 7.0.9
A denial-of-service vulnerability has been identified in Suricata versions prior to 7.0.9. The issue arises from the improper limitation of hash size settings in datasets declared by rules. This flaw can be exploited by untrusted rules, leading to excessive memory allocations and resource starvation.
Exploitation of this vulnerability can cause significant memory consumption, potentially leading to resource exhaustion and denial-of-service conditions.
Users are advised to upgrade to Suricata version 7.0.9 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.