-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 30 Mar 2025 12:03:02 +0200 Source: suricata Architecture: source Version: 1:6.0.1-3+deb11u1 Distribution: bullseye-security Urgency: medium Maintainer: Pierre Chifflier <pollux@debian.org> Changed-By: Thorsten Alteholz <debian@alteholz.de> Changes: suricata (1:6.0.1-3+deb11u1) bullseye-security; urgency=medium . * Non-maintainer upload by the LTS Team. * CVE-2021-45098 Fix bypass of HTTP-based signature by faking an RST TCP packet. * CVE-2023-35852 Fix unintended file access in local filesystem. * CVE-2024-32663 Fix using large amount of memory. * CVE-2024-37151 Fix mishandling of multiple fragmented packets, which might lead to policy bypass. * CVE-2024-45796 Fix logic error during fragment reassembly. * CVE-2025-29918 Fix infinite loop. * CVE-2024-55626 Fix buffer overflow due to large BPF filter file. Checksums-Sha1: d2ca4809e68108eb6d13c3c21332e00fc1b694e4 3096 suricata_6.0.1-3+deb11u1.dsc 68d715602cc65ddda0a8f3611481888b0e11d814 22465516 suricata_6.0.1.orig.tar.xz 101eaaff0b64a42f42831c97cb69c782bfd1104b 44072 suricata_6.0.1-3+deb11u1.debian.tar.xz 750e47b063ce71173d97b066f93d00daf064c0ae 7299 suricata_6.0.1-3+deb11u1_source.buildinfo Checksums-Sha256: c49f8f526602d2cd8f2fbd527b5676671699dd798e0912b2d1d3e95f1e64588b 3096 suricata_6.0.1-3+deb11u1.dsc 34e6c4ebd5aef044e3f4f4fba47e808c08af93b51a65088c628187d8bfd44f70 22465516 suricata_6.0.1.orig.tar.xz 53a7d402870c47d3c320d9d22846e7f086ae50f1616d9103dc37d321822b04c1 44072 suricata_6.0.1-3+deb11u1.debian.tar.xz 34a08d127df6dc51d5e0f40c053260d418a45404ca7aebb3914c21264cdcda98 7299 suricata_6.0.1-3+deb11u1_source.buildinfo Files: 24ce235d3aa245ec623f5f6c5c1d0340 3096 net optional suricata_6.0.1-3+deb11u1.dsc b0eda4ce433e634eedf00853a906d05c 22465516 net optional suricata_6.0.1.orig.tar.xz d616d385929e836d538613736c91de3c 44072 net optional suricata_6.0.1-3+deb11u1.debian.tar.xz 6bb6b1d323a4128afff94c113a2dffff 7299 net optional suricata_6.0.1-3+deb11u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQKnBAEBCgCRFiEEYgH7/9u94Hgi6ruWlvysDTh7WEcFAmfpuftfFIAAAAAALgAo aXNzdWVyLWZwckBub3RhdGlvbnMub3BlbnBncC5maWZ0aGhvcnNlbWFuLm5ldDYy MDFGQkZGREJCREUwNzgyMkVBQkI5Njk2RkNBQzBEMzg3QjU4NDcTHGRlYmlhbkBh bHRlaG9sei5kZQAKCRCW/KwNOHtYR/hAEAC9DIJ60jik4hhT2U5qUXKYQZUVKZEh hYtHgsx/ZvWPdF7Ox4h0Br7EXLYOKlPS67Wng6eTNfuKAL/KaQhuuSIalJjFIrGQ i6h9V8pkLcuXYslbIY+6BJ20DeW5VXsv8K3QE51HqVnfn140Y/gB0cI7yijkjXHQ 68iJuPQaX3LfVfGWEPCeuYGPvpnyMvQzcjRACUrcCg3LM58Lu6qFlil4OKeZI/Cf oUWj52mbN8maCWxNiLGScD9lwosolr2rq94ARmBuNrJECQAROOss+twAPfXOJN4J jBM1fxhJpVFPPp9jtTo4ko43ZMgHoIKHnLdgkW17Sd27ReLlhxmkvVaDfKG6jyQX 5daOqCf71jdGo4s6p5/WsFJCcxv0Kh/14OKwtb4tBbf+uEHr3J9hcH9PP7Te4Oxn BzZPWdi/WbqKfMqJMwI+hOydcJOnA2YMOjfXCrnZw6RFnt6mmV6g7JpTQYBeOhnL eIxGLKHx5Q7E29i6mvr5gIyTgRrauZQhyjHePZM/Nu24WwAEbAi8grP+ymAlaNbX o5ESBpilxy+Js1EjTbtJz40V46CRhfoU1+fPkXzP13Z2mCzMuubpr6UXsItW9vx1 Vy96qmlg+GZDdd/FYzV9e8ifs+y8deCXwCmgdqskrB45bIeeThVg7eDyb3L4SapU TVPSdgHJCdQeRw== =LYrX -----END PGP SIGNATURE-----