Project

General

Profile

Actions

Security #6187

open

detect: handle allocation failures during rule reload

Added by Philippe Antoine over 2 years ago. Updated 11 days ago.

Status:
In Progress
Priority:
Normal
Target version:
Affected Versions:
Label:
CVE:
Git IDs:
Severity:
MODERATE
Disclosure Date:

Description

Currently, we `BUG_ON` allocation failures

It looks plausible to run out of memory when trying to reload rules...

Found by nallocfuzz


Related issues 3 (2 open1 closed)

Blocked by Suricata - Bug #8146: utils-spm-hs: missing deallocators on hs_compile failureResolvedSergey ZhidkihActions
Copied from Suricata - Security #5851: rust: handle allocation failuresNewOISF DevActions
Copied to Suricata - Optimization #6188: ConfYamlLoadString: handle allocation failuresClosedPhilippe AntoineActions
Actions

Also available in: Atom PDF