CVE-2025-64331

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Prior to versions 7.0.13 and 8.0.2, a stack overflow can occur on large HTTP file transfers if the user has increased the HTTP response body limit and enabled the logging of printable http bodies. This issue has been patched in versions 7.0.13 and 8.0.2. A workaround for this issue involves using default HTTP response body limits and/or disabling http-body-printable logging; body logging is disabled by default.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:*
cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:*

History

08 Dec 2025, 19:30

Type Values Removed Values Added
First Time Oisf
Oisf suricata
CPE cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:*
References () https://github.com/OISF/suricata/security/advisories/GHSA-v32w-j79x-pfj2 - () https://github.com/OISF/suricata/security/advisories/GHSA-v32w-j79x-pfj2 - Third Party Advisory
CWE CWE-787

26 Nov 2025, 23:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-11-26 23:15

Updated : 2025-12-08 19:30


NVD link : CVE-2025-64331

Mitre link : CVE-2025-64331

CVE.ORG link : CVE-2025-64331


JSON object : View

Products Affected

oisf

  • suricata
CWE
CWE-121

Stack-based Buffer Overflow

CWE-787

Out-of-bounds Write