Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, a large HTTP content type, when logged can cause a stack overflow crashing Suricata. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves limiting stream.reassembly.depth to less then half the stack size. Increasing the process stack size makes it less likely the bug will trigger.
References
Configurations
No configuration.
History
26 Nov 2025, 23:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-11-26 23:15
Updated : 2025-11-28 23:11
NVD link : CVE-2025-64333
Mitre link : CVE-2025-64333
CVE.ORG link : CVE-2025-64333
JSON object : View
Products Affected
No product.
CWE
CWE-121
Stack-based Buffer Overflow
