CVE-2021-35063

Name
CVE-2021-35063
Description
Suricata before 5.0.7 and 6.x before 6.0.3 has a "critical evasion."
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://github.com/OISF/suricata/releases
MISC https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=990835
MISC https://security-tracker.debian.org/tracker/CVE-2021-35063
CONFIRM https://forum.suricata.io/t/suricata-6-0-3-and-5-0-7-released/1489
MISC https://bugzilla.redhat.com/show_bug.cgi?id=1980453
Mailing List https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/XEP7PWY4LRT2R4MFLV7JIJRYZEZ7RQFL/
Mailing List https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JU27J2ZYG6FBDL5CERE6FBB4ZFGHOROE/

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:* suricata >= None < 5.0.7
cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:* suricata >= 6.0.0 < 6.0.3

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
suricata edge-community 6.0.3-r0 Steve McMaster <code@mcmaster.io> fixed
suricata 3.22-community 6.0.3-r0 None fixed
suricata 3.21-community 6.0.3-r0 None fixed
suricata 3.20-community 6.0.3-r0 None fixed
suricata 3.19-community 6.0.3-r0 None fixed
suricata 3.18-community 6.0.3-r0 None fixed
suricata 3.17-community 6.0.3-r0 None fixed