Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. A memory allocation failure due to `http.memcap` being reached leads to a NULL-ptr reference leading to a crash. Upgrade to 7.0.6.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://github.com/OISF/suricata/security/advisories/GHSA-j32j-4w6g-94hh | vendor advisory |
https://redmine.openinfosecfoundation.org/issues/7029 | issue tracking exploit |
https://redmine.openinfosecfoundation.org/issues/7033 | issue tracking |