> Debian suricata-update Important Path Traversal Attack CVE-2026-63347
[DATE: 27/08/2026 15:30]
[LANGUAGE: EN]
Guillem Lefait discovered a path traversal attack in suricata-update, a tool for updating Suricata rules, which allowed malformed rules to overwrite files on the system. For the stable distribution (trixie), this problem has been fixed in version 1.3.4-1+deb13u1.