CVE-2025-64335: Suricata is vulnerable to a null deref when used with base64_data
Suricata is a network IDS, IPS and NSM engine developed by the OISF (Open Information Security Foundation) and the Suricata community. In versions from 8.0.0 to before 8.0.2, a NULL dereference can occur when the entropy keyword is used in conjunction with base64data. This issue has been patched in version 8.0.2. A workaround involves disabling rules that use entropy in conjunction with base64data.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64335?
CVE-2025-64335 is classified as a medium severity vulnerability due to the potential for a NULL dereference.
How do I fix CVE-2025-64335?
To fix CVE-2025-64335, users should upgrade Suricata to version 8.0.2 or later, which resolves this issue.
What software is affected by CVE-2025-64335?
CVE-2025-64335 affects OISF Suricata versions from 8.0.0 to before 8.0.2.
What causes the CVE-2025-64335 vulnerability?
CVE-2025-64335 is caused by a NULL dereference when the entropy keyword is used in conjunction with base64_data.
Is there any workaround for CVE-2025-64335?
Currently, there is no official workaround for CVE-2025-64335, so upgrading to the patched version is recommended.