CVE-2024-24568: Suricata http2: header handling evasion
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to 7.0.3, the rules inspecting HTTP2 headers can get bypassed by crafted traffic. The vulnerability has been patched in 7.0.3.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Suricatato a version that resolves this vulnerability.Fixed in 7.0.3
Event History
Frequently Asked Questions
What is the severity of CVE-2024-24568?
CVE-2024-24568 is considered a medium severity vulnerability due to the potential bypass of critical HTTP2 header inspection rules.
How do I fix CVE-2024-24568?
To fix CVE-2024-24568, upgrade Suricata to version 7.0.3 or later.
Which versions of Suricata are affected by CVE-2024-24568?
CVE-2024-24568 affects all versions of Suricata prior to 7.0.3.
What is the impact of CVE-2024-24568?
The impact of CVE-2024-24568 is that crafted traffic can bypass rules that inspect HTTP2 headers, potentially leading to security breaches.
Are there any workarounds for CVE-2024-24568?
Currently, there are no known workarounds for CVE-2024-24568 other than upgrading to the patched version.