Description

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Versions 8.0.0 and below incorrectly handle the entropy keyword when not anchored to a "sticky" buffer, which can lead to a segmentation fault. This issue is fixed in version 8.0.1. To workaround this issue, users can disable rules using the entropy keyword, or validate they are anchored to a sticky buffer.

INFO

Published Date :

2025-10-01T19:51:27.388Z

Last Modified :

2025-10-01T19:58:13.158Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2025-59148 vulnerability.

Vendors Products
Oisf
  • Suricata

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact