[Git][security-tracker-team/security-tracker][master] Add new suricata issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Nov 27 08:29:21 GMT 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
cb0d0c2f by Salvatore Bonaccorso at 2025-11-27T09:28:44+01:00
Add new suricata issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -19,19 +19,38 @@ CVE-2025-66030 (Forge (also called `node-forge`) is a native implementation of T
 CVE-2025-65202 (TRENDnet TEW-657BRM 1.00.1 has an authenticated remote OS command inje ...)
 	NOT-FOR-US: TRENDnet
 CVE-2025-64344 (Suricata is a network IDS, IPS and NSM engine developed by the OISF (O ...)
-	TODO: check
+	- suricata 1:8.0.2-1
+	NOTE: https://github.com/OISF/suricata/security/advisories/GHSA-93fh-cgmc-w3rx
+	NOTE: https://redmine.openinfosecfoundation.org/issues/8065
+	NOTE: https://github.com/OISF/suricata/commit/e13fe6a90dba210a478148c4084f6f5db17c5b5a (suricata-8.0.2)
 CVE-2025-64335 (Suricata is a network IDS, IPS and NSM engine developed by the OISF (O ...)
-	TODO: check
+	- suricata 1:8.0.2-1
+	NOTE: https://github.com/OISF/suricata/security/advisories/GHSA-v299-h7p3-q4f2
+	NOTE: https://redmine.openinfosecfoundation.org/issues/7959
+	NOTE: Fixed by: https://github.com/OISF/suricata/commit/c935f08cd988600fd0a4f828a585b181dd5de012 (suricata-8.0.2)
 CVE-2025-64334 (Suricata is a network IDS, IPS and NSM engine developed by the OISF (O ...)
-	TODO: check
+	- suricata 1:8.0.2-1
+	NOTE: https://github.com/OISF/suricata/security/advisories/GHSA-r5jf-v2gx-gx8w
+	NOTE: https://redmine.openinfosecfoundation.org/issues/7980
+	NOTE: Fixed by: https://github.com/OISF/suricata/commit/00f04daa3a44928dfdd0003cb9735469272c94a1 (suricata-8.0.2)
 CVE-2025-64333 (Suricata is a network IDS, IPS and NSM engine developed by the OISF (O ...)
-	TODO: check
+	- suricata 1:8.0.2-1
+	NOTE: https://github.com/OISF/suricata/security/advisories/GHSA-537h-xxmx-v87m
+	NOTE: https://redmine.openinfosecfoundation.org/issues/8056 (private)
 CVE-2025-64332 (Suricata is a network IDS, IPS and NSM engine developed by the OISF (O ...)
-	TODO: check
+	- suricata 1:8.0.2-1
+	NOTE: https://github.com/OISF/suricata/security/advisories/GHSA-p32q-7wcp-gv92
+	NOTE: https://redmine.openinfosecfoundation.org/issues/8055
+	NOTE: Fixed by: https://github.com/OISF/suricata/commit/ad446c9006a77490af51c468aae0ce934f4d2117 (suricata-8.0.2)
 CVE-2025-64331 (Suricata is a network IDS, IPS and NSM engine developed by the OISF (O ...)
-	TODO: check
+	- suricata 1:8.0.2-1
+	NOTE: https://github.com/OISF/suricata/security/advisories/GHSA-v32w-j79x-pfj2
+	NOTE: https://redmine.openinfosecfoundation.org/issues/8004 (private)
 CVE-2025-64330 (Suricata is a network IDS, IPS and NSM engine developed by the OISF (O ...)
-	TODO: check
+	- suricata 1:8.0.2-1
+	NOTE: https://github.com/OISF/suricata/security/advisories/GHSA-83v7-gm34-f437
+	NOTE: https://redmine.openinfosecfoundation.org/issues/8021
+	NOTE: Fixed by: https://github.com/OISF/suricata/commit/482e5eac9218d007adbe2410d6c00173368ce947 (suricata-8.0.2)
 CVE-2025-62593 (Ray is an AI compute engine. Prior to version 2.52.0, developers worki ...)
 	TODO: check
 CVE-2025-3784 (Cleartext Storage of Sensitive Information Vulnerability in GX Works2  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cb0d0c2f6f2a331d6cf0685a3cc2bacfb8adc6e7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/cb0d0c2f6f2a331d6cf0685a3cc2bacfb8adc6e7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20251127/b0585603/attachment.htm>


More information about the debian-security-tracker-commits mailing list