[Git][security-tracker-team/security-tracker][master] Add CVE-2024-23835/suricata

Salvatore Bonaccorso (@carnil) carnil at debian.org
Mon Feb 26 21:42:24 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
26963839 by Salvatore Bonaccorso at 2024-02-26T22:40:20+01:00
Add CVE-2024-23835/suricata

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -78,7 +78,16 @@ CVE-2024-23837 (LibHTP is a security-aware parser for the HTTP protocol. Crafted
 CVE-2024-23836 (Suricata is a network Intrusion Detection System, Intrusion Prevention ...)
 	TODO: check
 CVE-2024-23835 (Suricata is a network Intrusion Detection System, Intrusion Prevention ...)
-	TODO: check
+	- suricata 1:7.0.3-1
+	[bookworm] - suricata <not-affected> (Vulnerable code not present)
+	[bullseye] - suricata <not-affected> (Vulnerable code not present)
+	[buster] - suricata <not-affected> (Vulnerable code not present)
+	NOTE: https://github.com/OISF/suricata/security/advisories/GHSA-8583-353f-mvwc
+	NOTE: https://redmine.openinfosecfoundation.org/issues/6411
+	NOTE: https://github.com/OISF/suricata/commit/86de7cffa7e8f06fe9d600127e7dabe89c7e81dd (master)
+	NOTE: https://github.com/OISF/suricata/commit/f52c033e566beafb4480c139eb18662a2870464f (master)
+	NOTE: https://github.com/OISF/suricata/commit/b0d762d2675a2441b74e039d54bfa5b050641f8e (suricata-7.0.3)
+	NOTE: https://github.com/OISF/suricata/commit/61a32360eba3c032de51029a05515ab46690286f (suricata-7.0.3)
 CVE-2024-23605 (A heap-based buffer overflow vulnerability exists in the GGUF library  ...)
 	TODO: check
 CVE-2024-23496 (A heap-based buffer overflow vulnerability exists in the GGUF library  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/269638393eccc33bbbafd43e0666af250039cc8b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/269638393eccc33bbbafd43e0666af250039cc8b
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240226/01148928/attachment.htm>


More information about the debian-security-tracker-commits mailing list