Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-59148


Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Versions 8.0.0 and below incorrectly handle the entropy keyword when not anchored to a "sticky" buffer, which can lead to a segmentation fault. This issue is fixed in version 8.0.1. To workaround this issue, users can disable rules using the entropy keyword, or validate they are anchored to a sticky buffer.


Published

2025-10-01T20:18:38.480

Last Modified

2025-10-06T16:59:50.523

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 7.5 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-476

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application oisf suricata 8.0.0 Yes
Application oisf suricata 8.0.0 Yes
Application oisf suricata 8.0.0 Yes

References