CVE-2021-35063: High severity OISF Suricata vulnerability
Published Jul 8, 2021
·Updated
Suricata before 5.0.7 and 6.x before 6.0.3 has a "critical evasion."
Other sources
Various security, performance, accuracy and stability issues have been fixed, including a critical evasion assigned CVE-2021-35063.
Reference: https://forum.suricata.io/t/suricata-6-0-3-and-5-0-7-released/1489
— Red Hat
Affected Software
7 affected componentsFixes available
OISF Suricata<5.0.7
OISF Suricata>=6.0.0<6.0.3
Debian Debian Linux=9.0
Debian Debian Linux=10.0
Fedoraproject Fedora=34
Fedoraproject Fedora=35
debian/suricata
1:6.0.1-31:6.0.1-3+deb11u11:6.0.10-11:7.0.10-1+deb13u21:8.0.3-1
Event History
Jul 8, 2021
Data Sourced
via Red Hat·04:52 PM
DescriptionSeverityAffected Software
Data Sourced
via Debian·09:51 PM
SeverityAffected Software
Jul 22, 2021
CVE Published
via MITRE·05:01 PM
Data Sourced
via MITRE·05:01 PM
Description
Feb 24, 2026
Data Sourced
via Debian·08:03 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-35063.
2
What is the severity of CVE-2021-35063?
The severity of CVE-2021-35063 is high with a severity value of 7.5.
3
What is the affected software?
Suricata versions before 5.0.7 and 6.x before 6.0.3 are affected.
4
How do I fix CVE-2021-35063?
Upgrade to Suricata version 5.0.7 or 6.0.3 or higher to fix CVE-2021-35063.
5
Where can I find more information about CVE-2021-35063?
You can find more information about CVE-2021-35063 at the following references: [link1], [link2], [link3].