Lucene search

K
vulnrichmentGitHub_MVULNRICHMENT:CVE-2024-32867
HistoryMay 07, 2024 - 3:06 p.m.

CVE-2024-32867 Suricata's defrag contains various issues leading to policy bypass

2024-05-0715:06:58
CWE-754
GitHub_M
github.com
1
suricata
fragmentation
policy bypass
vulnerability
cve-2024-32867

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

AI Score

5.2

Confidence

High

SSVC

Exploitation

none

Automatable

yes

Technical Impact

partial

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.5 and 6.0.19, various problems in handling of fragmentation anomalies can lead to mis-detection of rules and policy. This vulnerability is fixed in 7.0.5 or 6.0.19.

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:a:oisf:suricata:-:*:*:*:*:*:*:*"
    ],
    "vendor": "oisf",
    "product": "suricata",
    "versions": [
      {
        "status": "affected",
        "version": ">= 6.0.0, <= 6.0.18, >= 7.0.0, <= 7.0.4"
      }
    ],
    "defaultStatus": "unknown"
  }
]

CVSS3

5.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

AI Score

5.2

Confidence

High

SSVC

Exploitation

none

Automatable

yes

Technical Impact

partial