We found results for “”
CVE-2025-59149
Good to know:
Date: October 1, 2025
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In version 8.0.0, rules using keyword ldap.responses.attribute_type (which is long) with transforms can lead to a stack buffer overflow during Suricata startup or during a rule reload. This issue is fixed in version 8.0.1. To workaround this issue, users can disable rules with ldap.responses.attribute_type and transforms.
Severity Score
Related Resources (6)
Severity Score
Weakness Type (CWE)
Stack-based Buffer Overflow
CWE-121Top Fix
Upgrade Version
Upgrade to version https://github.com/OISF/suricata.git - suricata-7.0.12;https://github.com/OISF/suricata.git - suricata-8.0.1
CVSS v3.1
| Base Score: |
|
|---|---|
| Attack Vector (AV): | LOCAL |
| Attack Complexity (AC): | LOW |
| Privileges Required (PR): | NONE |
| User Interaction (UI): | NONE |
| Scope (S): | UNCHANGED |
| Confidentiality (C): | NONE |
| Integrity (I): | NONE |
| Availability (A): | HIGH |
Vulnerabilities
Projects
Contact Us


