Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-31934

Опубликовано: 02 апр. 2026
Источник: debian
EPSS Низкий

Описание

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, there is a quadratic complexity issue when searching for URLs in mime encoded messages over SMTP leading to a performance impact. This issue has been patched in version 8.0.4.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
suricatafixed1:8.0.4-1package
suricatanot-affectedtrixiepackage
suricatanot-affectedbullseyepackage

Примечания

  • https://github.com/OISF/suricata/security/advisories/GHSA-hr89-h2pp-f3c8

  • https://redmine.openinfosecfoundation.org/issues/8293

  • https://github.com/OISF/suricata/commit/7a670e9b7a1d55ed170940da1777b32ff42edad2 (suricata-8.0.4)

  • Introduced by: https://github.com/OISF/suricata/commit/a10c1f1dded570f99c4972ef9f730cec79218b75 (suricata-8.0.0-beta1)

EPSS

Процентиль: 19%
0.00272
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
4 месяца назад

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, there is a quadratic complexity issue when searching for URLs in mime encoded messages over SMTP leading to a performance impact. This issue has been patched in version 8.0.4.

CVSS3: 7.5
redhat
4 месяца назад

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, there is a quadratic complexity issue when searching for URLs in mime encoded messages over SMTP leading to a performance impact. This issue has been patched in version 8.0.4.

CVSS3: 7.5
nvd
4 месяца назад

Suricata is a network IDS, IPS and NSM engine. From version 8.0.0 to before version 8.0.4, there is a quadratic complexity issue when searching for URLs in mime encoded messages over SMTP leading to a performance impact. This issue has been patched in version 8.0.4.

CVSS3: 7.5
fstec
4 месяца назад

Уязвимость системы обнаружения и предотвращения вторжений Suricata, связанная с алгоритмической сложностью, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 19%
0.00272
Низкий