CVE-2024-24568: Fedoraproject Fedora
Medium severity, CVSS 5.3. EPSS: 0.6% chance of exploitation in the next 30 days.
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.3, the rules inspecting HTTP2 headers can get bypassed by crafted traffic. The vulnerability has been patched in 7.0.3.
Affected products
- Fedoraproject Fedora: version 38 only; version 39 only
- Oisf Suricata: from 7.0.0, before 7.0.3 (fixed in 7.0.3)
Published 2024-02-26. Last modified 2026-06-17.