CVE-2026-45752
- EPSS -
- Veröffentlicht 10.09.2026 20:37:49
- Zuletzt bearbeitet 28.09.2026 18:44:43
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Starting in version 8.0.0 and prior to version 8.0.5, when certain detection transforms are chained, the decompress transform pipeli...
CVE-2026-45751
- EPSS -
- Veröffentlicht 10.09.2026 20:28:30
- Zuletzt bearbeitet 28.09.2026 18:44:52
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, Suricata's inspection-buffer helper could leave an inspection pointer referencing freed memory a...
CVE-2026-45747
- EPSS -
- Veröffentlicht 10.09.2026 14:17:44
- Zuletzt bearbeitet 28.09.2026 18:44:03
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to version 7.0.16, the Lua TLS certificate information helper could dereference NULL certificate fields when a Lua script requ...
CVE-2026-46387
- EPSS -
- Veröffentlicht 10.09.2026 14:10:28
- Zuletzt bearbeitet 28.09.2026 18:44:12
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, Suricata's HTTP/2 decompression path could grow the decompressed response-body buffer without an...
CVE-2026-45763
- EPSS -
- Veröffentlicht 10.09.2026 13:24:43
- Zuletzt bearbeitet 28.09.2026 18:43:52
Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Starting in version 8.0.0 and prior to version 8.0.5, when Lua rule execution is enabled, the Lua sandbox memory limit was not consi...
CVE-2026-31937
- EPSS 0.35%
- Veröffentlicht 02.04.2026 14:38:22
- Zuletzt bearbeitet 07.04.2026 21:19:57
Suricata is a network IDS, IPS and NSM engine. Prior to version 7.0.15, inefficiency in DCERPC buffering can lead to a performance degradation. This issue has been patched in version 7.0.15.
CVE-2026-31935
- EPSS 0.27%
- Veröffentlicht 02.04.2026 14:36:44
- Zuletzt bearbeitet 07.04.2026 21:20:24
Suricata is a network IDS, IPS and NSM engine. Prior to versions 7.0.15 and 8.0.4, flooding of craft HTTP2 continuation frames can lead to memory exhaustion, usually resulting in the Suricata process being shut down by the operating system. This issu...
CVE-2026-31934
- EPSS 0.27%
- Veröffentlicht 02.04.2026 14:21:08
- Zuletzt bearbeitet 07.04.2026 21:20:09
Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, there is a quadratic complexity issue when searching for URLs in mime encoded messages over SMTP leading to a performance impact. This issue has been patched i...
CVE-2026-31933
- EPSS 0.35%
- Veröffentlicht 02.04.2026 14:16:28
- Zuletzt bearbeitet 07.04.2026 18:30:03
Suricata is a network IDS, IPS and NSM engine. Prior to versions 7.0.15 and 8.0.4, specially crafted traffic can cause Suricata to slow down, affecting performance in IDS mode. This issue has been patched in versions 7.0.15 and 8.0.4.
CVE-2026-31931
- EPSS 0.35%
- Veröffentlicht 02.04.2026 14:16:28
- Zuletzt bearbeitet 07.04.2026 18:28:33
Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, use of the "tls.alpn" rule keyword can cause Suricata to crash with a NULL dereference. This issue has been patched in version 8.0.4.