Description

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. The bytes setting in the decode_base64 keyword is not properly limited. Due to this, signatures using the keyword and setting can cause large memory allocations of up to 4 GiB per thread. This vulnerability is fixed in 7.0.9.

INFO

Published Date :

2025-04-10T21:00:05.924Z

Last Modified :

2025-04-11T16:03:53.438Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-29917 vulnerability.

Vendors Products
Oisf
  • Suricata

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact