Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-22261

Опубликовано: 27 янв. 2026
Источник: debian
EPSS Низкий

Описание

Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, various inefficiencies in xff handling, especially for alerts not triggered in a tx, can lead to severe slowdowns. Versions 8.0.3 and 7.0.14 contain a patch. As a workaround, disable XFF support in the eve configuration. The setting is disabled by default.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
suricatafixed1:8.0.3-1package

Примечания

  • https://github.com/OISF/suricata/security/advisories/GHSA-5jvg-5j3p-34cf

  • https://github.com/OISF/suricata/commit/3f0725b34c7871c2de4346c8af872f10f4501e44 (suricata-8.0.3)

EPSS

Процентиль: 17%
0.00054
Низкий

Связанные уязвимости

CVSS3: 3.7
ubuntu
8 дней назад

Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, various inefficiencies in xff handling, especially for alerts not triggered in a tx, can lead to severe slowdowns. Versions 8.0.3 and 7.0.14 contain a patch. As a workaround, disable XFF support in the eve configuration. The setting is disabled by default.

CVSS3: 3.7
nvd
8 дней назад

Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, various inefficiencies in xff handling, especially for alerts not triggered in a tx, can lead to severe slowdowns. Versions 8.0.3 and 7.0.14 contain a patch. As a workaround, disable XFF support in the eve configuration. The setting is disabled by default.

CVSS3: 3.7
fstec
8 дней назад

Уязвимость системы обнаружения и предотвращения вторжений Suricata, связанная с чрезмерной загрузкой центрально процессора, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 17%
0.00054
Низкий