Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 42: FEDORA-2025-a9e7d63dc7 High-severity Suricata Fix

fedora
Calendar Grey April 11, 2025
Dist Fedora Esm H88
Tackling vital challenges in Suricata 7.0.9 tailored for Fedora 42. Improved security, efficiency, and reliability characterize this update.
This is an extra release to address a critical issue in 7.0.9 affecting AF_PACKET users: setting a BPF would cause Suricata to fail to start up

Summary

The Suricata Engine is an Open Source Next Generation Intrusion

Detection and Prevention Engine. This engine is not intended to

just replace or emulate the existing tools in the industry, but

will bring new ideas and technologies to the field. This new Engine

supports Multi-threading, Automatic Protocol Detection (IP, TCP,

UDP, ICMP, HTTP, TLS, FTP and SMB! ), Gzip Decompression, Fast IP

Matching, and GeoIP identification.

Update Information:

This is an extra release to address a critical issue in 7.0.9 affecting AF_PACKET users: setting a BPF would cause Suricata to fail to start up. This has been fixed. Various security, performance, accuracy, and stability issues have been fixed. LibHTP has been updated to version 0.5.50 which is bundled with this new release. This fixes: CVE-2025-29915: HIGH CVE-2025-29917: HIGH CVE-2025-29918: HIGH CVE-2025-29916: Moderate

Change Log

* Tue Mar 25 2025 Steve Grubb 7.0.10-1 - New bugfix release * Tue Mar 18 2025 Steve Grubb 7.0.9-1 - New security and bugfix release * Tue Feb 11 2025 Zbigniew Jędrzejewski-Szmek - 7.0.8-3 - Add sysusers.d config file to allow rpm to create users/groups automatically

References

Fedora Update Notification FEDORA-2025-a9e7d63dc7 2025-04-11 18:19:12.061306+00:00
Name : suricata Product : Fedora 42 Version : 7.0.10 Release : 1.fc42 URL : Summary : Intrusion Detection System Description : The Suricata Engine is an Open Source Next Generation Intrusion Detection and Prevention Engine. This engine is not intended to just replace or emulate the existing tools in the industry, but will bring new ideas and technologies to the field. This new Engine supports Multi-threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB! ), Gzip Decompression, Fast IP Matching, and GeoIP identification.

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-a9e7d63dc7' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: suricata
Product: Fedora 42
Version: 7.0.10
Release: 1.fc42
URL:
Summary: Intrusion Detection System

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here