CVE-2025-53537: LibHTP's memory leak with lzma can lead to resource starvation
LibHTP is a security-aware parser for the HTTP protocol and its related bits and pieces. In versions 0.5.50 and below, there is a traffic-induced memory leak that can starve the process of memory, leading to loss of visibility. To workaround this issue, set suricata.yaml app-layer.protocols.http.libhtp.default-config.lzma-enabled to false. This issue is fixed in version 0.5.51.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53537?
CVE-2025-53537 is classified as a moderate severity vulnerability due to the potential memory leak affecting application performance.
How do I fix CVE-2025-53537?
To mitigate CVE-2025-53537, upgrade to LibHTP version 0.5.51 or newer.
What versions of LibHTP are affected by CVE-2025-53537?
CVE-2025-53537 affects LibHTP versions 0.5.50 and below.
What is the impact of CVE-2025-53537 on system performance?
CVE-2025-53537 can lead to a memory leak that may result in process starvation and loss of visibility.
Is there a workaround for CVE-2025-53537?
Yes, a workaround involves adjusting settings in the suricata.yaml file to limit the impact of the memory leak.