Skip to main content

Vendor/product archive

oisf / libhtp CVEs

Beta · best-effort

7 CVEs tagged to oisf / libhtp1 Critical, 5 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2025-53537

Published Jul 23, 2025

LibHTP is a security-aware parser for the HTTP protocol and its related bits and pieces. In versions 0.5.50 and below, there is a traffic-induced memory leak that can starve the p…

CVSS 7.5 · High
evidence mentions
2
Buzz score
16.0
Vendor/product tagsBeta · best-effort

CVE-2024-45797

Published Oct 16, 2024

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Prior to version 0.5.49, unbounded processing of HTTP request and response headers can lea…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-28871

Published Apr 4, 2024

LibHTP is a security-aware parser for the HTTP protocol and the related bits and pieces. Version 0.5.46 may parse malformed request traffic, leading to excessive CPU usage. Versio…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2024-23837

Published Feb 26, 2024

LibHTP is a security-aware parser for the HTTP protocol. Crafted traffic can cause excessive processing time of HTTP headers, leading to denial of service. This issue is addressed…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2019-17420

Published Oct 10, 2019

In OISF LibHTP before 0.5.31, as used in Suricata 4.1.4 and other products, an HTTP protocol parsing error causes the http_header signature to not alert on a response with a singl…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-10243

Published Apr 4, 2019

htp_parse_authorization_digest in htp_parsers.c in LibHTP 0.5.26 allows remote attackers to cause a heap-based buffer over-read via an authorization digest header.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-0928

Published Aug 28, 2017

libhtp 0.5.15 allows remote attackers to cause a denial of service (NULL pointer dereference).

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-7 of 7 CVEsPage 1 of 1