USN-8766-1: Suricata-Update vulnerability
Guillem Lefait discovered that Suricata-Update did not properly validate destination paths when extracting files referenced by downloaded rule archives. An attacker could possibly use this issue to write arbitrary files outside the configured rules directory.
Details
Original advisory: https://ubuntu.com/security/notices/USN-8766-1
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-63347 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- unknownDSA-6475-1 suricata-update - security updatedebian
More from Ubuntu Security Notices
- unknownUSN-8770-1: SimpleSAMLphp vulnerabilities2026-09-15
- unknownUSN-8769-1: phpseclib vulnerability2026-09-15
- unknownUSN-8768-1: Shibboleth vulnerability2026-09-15
- unknownUSN-8767-1: Snapcast vulnerability2026-09-15
- unknownUSN-8765-1: python-sql vulnerability2026-09-15