Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 38: 2024-7b063bce0a Critical: Suricata Bypass Rule Fix

fedora
Calendar Grey March 7, 2024
Dist Fedora Esm H88
A new Suricata release for Fedora 38 addresses various CVEs, improving the safety and reliability of the intrusion prevention framework.
This update fixes: CVE-2024-23835, CVE-2024-23836, CVE-2024-23837, CVE-2024-23839, CVE-2024-24568.

Summary

The Suricata Engine is an Open Source Next Generation Intrusion

Detection and Prevention Engine. This engine is not intended to

just replace or emulate the existing tools in the industry, but

will bring new ideas and technologies to the field. This new Engine

supports Multi-threading, Automatic Protocol Detection (IP, TCP,

UDP, ICMP, HTTP, TLS, FTP and SMB! ), Gzip Decompression, Fast IP

Matching, and GeoIP identification.

Update Information:

This update fixes: CVE-2024-23835, CVE-2024-23836, CVE-2024-23837, CVE-2024-23839, CVE-2024-24568.

Change Log

* Mon Feb 26 2024 Steve Grubb 6.0.16-1 - New security and bugfix release

References


[ 1 ] Bug #2266171 - CVE-2024-24568 suricata: potential bypass of rules inspecting HTTP2 headers [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266171 [ 2 ] Bug #2266172 - CVE-2024-24568 suricata: potential bypass of rules inspecting HTTP2 headers [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2266172

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-7b063bce0a' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: suricata
Product: Fedora 38
Version: 6.0.16
Release: 1.fc38
URL: /
Summary: Intrusion Detection System

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here