Vulnerabilities > Oisf > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-10-16 CVE-2024-45796 Off-by-one Error vulnerability in Oisf Suricata
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine.
network
low complexity
oisf CWE-193
5.3
2021-12-16 CVE-2021-45098 An issue was discovered in Suricata before 6.0.4.
network
low complexity
oisf debian
5.0
2019-10-10 CVE-2019-17420 Improper Input Validation vulnerability in multiple products
In OISF LibHTP before 0.5.31, as used in Suricata 4.1.4 and other products, an HTTP protocol parsing error causes the http_header signature to not alert on a response with a single \r\n ending.
network
low complexity
oisf suricata-ids CWE-20
5.0
2019-07-18 CVE-2019-1010279 Improper Verification of Cryptographic Signature vulnerability in Oisf Suricata
Open Information Security Foundation Suricata prior to version 4.1.3 is affected by: Denial of Service - TCP/HTTP detection bypass.
network
low complexity
oisf CWE-347
5.0
2019-07-18 CVE-2019-1010251 Improper Input Validation vulnerability in Oisf Suricata
Open Information Security Foundation Suricata prior to version 4.1.2 is affected by: Denial of Service - DNS detection bypass.
network
low complexity
oisf CWE-20
5.0
2019-05-13 CVE-2019-10050 Out-of-bounds Read vulnerability in Oisf Suricata
A buffer over-read issue was discovered in Suricata 4.1.x before 4.1.4.
network
low complexity
oisf CWE-125
5.0
2017-08-28 CVE-2015-0928 NULL Pointer Dereference vulnerability in Oisf Libhtp 0.5.15
libhtp 0.5.15 allows remote attackers to cause a denial of service (NULL pointer dereference).
network
low complexity
oisf CWE-476
5.0