CVE-2024-24568
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.3, the rules inspecting HTTP2 headers can get bypassed by crafted traffic. The vulnerability has been patched in 7.0.3.
- Affected products
- Suricata
- Oisf Suricata
- < 7.0.3
- Fix
- Available
- CVSS 3.1
- 5.3 MEDIUM
- EPSS
- 0.6% (47th percentile)
- Weakness
- CWE-284
- NVD status
- Analyzed
- Published
- 2024-02-26
CVE-2024-24568 at NVD
No indexed exploits for CVE-2024-24568 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2024-24568 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.