Suricata before 1.4.6 allows remote attackers to cause a denial of service (crash) via a malformed SSL record.
| Software | From | Fixed in |
|---|---|---|
| openinfosecfoundation / suricata | - | 1.4.5.x |
| openinfosecfoundation / suricata | 1.4 | 1.4.x |
| oisf / suricata | 1.3-beta2 | 1.3-beta2.x |
| oisf / suricata | 1.3-beta3 | 1.3-beta3.x |
| oisf / suricata | 1.3-rc1 | 1.3-rc1.x |
| oisf / suricata | 1.3.1 | 1.3.1.x |
| oisf / suricata | 1.3.2 | 1.3.2.x |
| oisf / suricata | 1.3.3 | 1.3.3.x |
| oisf / suricata | 1.3.4 | 1.3.4.x |
| oisf / suricata | 1.3.5 | 1.3.5.x |
| oisf / suricata | 1.3.6 | 1.3.6.x |
| oisf / suricata | 1.4-beta1 | 1.4-beta1.x |
| oisf / suricata | 1.4-beta2 | 1.4-beta2.x |
| oisf / suricata | 1.4-beta3 | 1.4-beta3.x |
| oisf / suricata | 1.4-rc1 | 1.4-rc1.x |
| oisf / suricata | 1.4.1 | 1.4.1.x |
| oisf / suricata | 1.4.2 | 1.4.2.x |
| oisf / suricata | 1.4.3 | 1.4.3.x |
| oisf / suricata | 1.4.4 | 1.4.4.x |