CVE-2025-64331
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, a stack overflow can occur on large HTTP file transfers if the user has increased the HTTP response body limit and enabled the logging of printable http bodies. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves using default HTTP response body limits and/or disabling http-body-printable logging; body logging is disabled by default.
- Oisf Suricata
- < 7.0.13, 8.0.2
- Fix
- Available
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 0.3% (24th percentile)
- Weakness
- CWE-787, CWE-121
- NVD status
- Analyzed
- Published
- 2025-11-26
No indexed exploits for CVE-2025-64331 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2025-64331 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.