fixes denial of service issue caused by unset rules
CVE-2024-45795
7.5HIGH
What is CVE-2024-45795?
A vulnerability exists in Suricata, a leading network Intrusion Detection System and network security monitoring engine, impacting versions prior to 7.0.7. The issue arises from the improper handling of datasets featuring the non-functional or unimplemented 'unset' option. This mismanagement can trigger assertions during traffic parsing processes, potentially leading to a denial of service condition. Users of affected versions are advised to upgrade to 7.0.7 or later to mitigate this issue. As a precaution, employing only trusted and thoroughly tested rulesets is recommended.
Affected Version(s)
suricata < 7.0.7