CVE-2024-55628
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.8, DNS resource name compression can lead to small DNS messages containing very large hostnames which can be costly to decode, and lead to very large DNS log records. While there are limits in place, they were too generous. The issue has been addressed in Suricata 7.0.8.
- Oisf Suricata
- < 7.0.8
- Fix
- Available
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 0.7% (49th percentile)
- Weakness
- CWE-405, CWE-779
- NVD status
- Analyzed
- Published
- 2025-01-06
CVE-2024-55628 at NVD
No indexed exploits for CVE-2024-55628 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2024-55628 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.