VendorsOISFlibhtpany version
Vulnerabilities

OISF Libhtp any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2024-23837
LibHTP unbounded folded header handling leads to denial service
Published 2024-02-26 · Modified
7.5EPSS 0.012
CVE-2024-45797
LibHTP's unbounded header handling leads to denial service
Published 2024-10-16 · Modified
7.5EPSS 0.007
CVE-2025-53537
LibHTP's memory leak with lzma can lead to resource starvation
Published 2025-07-23 · Analyzed
7.5EPSS 0.004
CVE-2019-17420
In OISF LibHTP before 0.5.31, as used in Suricata 4.1.4 and other products, an HTTP protocol parsing error causes the http_header signature to not alert on a response with a single \r\n ending.
Published 2019-10-09 · Modified
5.3EPSS 0.014