DSA-6475-1 suricata-update - security update
Guillem Lefait discovered a path traversal attack in suricata-update, a tool for updating Suricata rules, which allowed malformed rules to overwrite files on the system. https://security-tracker.debian.org/tracker/DSA-6475-1
CSIRTS triage
- What
- Malformed Suricata rules can trigger a path traversal attack allowing files on the system to be overwritten.
- Who is affected
- Systems using suricata-update to manage Suricata IDS/IPS rules.
- Urgency
- Path traversal leading to arbitrary file write is a serious vulnerability; patch via Debian DSA-6475-1.
- Action
- Apply the Debian security update DSA-6475-1 to suricata-update.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch suricata-update
Get an email when a new suricata-update advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://lists.debian.org/debian-security-announce/2026/msg00386.html
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-63347 | coverage & exploitation status | NVD · CVE.org |
More from Debian Security Advisories
- unknownDSA-6482-1 chromium - security update2026-09-03
- unknownDSA-6481-1 firefox-esr - security update2026-09-02
- unknownDSA-6480-1 keystone - security update2026-09-01
- unknownDSA-6478-1 starlette - security update2026-08-30
- unknownDSA-6479-1 roundcube - security update2026-08-30