Description
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Suricata can run out of memory when parsing crafted HTTP/2 traffic. Upgrade to 6.0.20 or 7.0.6.
Problem types
CWE-770: Allocation of Resources Without Limits or Throttling
Product status
>= 7.0.0, < 7.0.6
References
github.com/...ricata/security/advisories/GHSA-cg8j-7mwm-v563
github.com/...ommit/62d5cac1b8483d5f9d2b79833a4e59f5d80129b7
github.com/...ommit/c82fa5ca0d1ce0bd8f936e0b860707a6571373b2
redmine.openinfosecfoundation.org/issues/7104
redmine.openinfosecfoundation.org/issues/7105
redmine.openinfosecfoundation.org/issues/7112