Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-59148

Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. Versions 8.0.0 and below incorrectly handle the entropy keyword when not anchored to a "sticky" buffer, which can lead to a segmentation fault. This issue is fixed in version 8.0.1. To workaround this issue, users can disable rules using the entropy keyword, or validate they are anchored to a sticky buffer.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 14.8%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2025-59148
  • Oisf » Suricata » Version: 8.0.0
    cpe:2.3:a:oisf:suricata:8.0.0


Contact Us

Shodan ® - All rights reserved