PT-2026-4995 · Open Information Security Foundation · Suricata

·

CVE-2026-22263

·

Published

2026-01-01

·

Updated

2026-01-27

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Suricata versions 8.0.0 through 8.0.2
Description Suricata is a network IDS, IPS and NSM engine. An inefficiency in http1 headers parsing, present in versions starting from 8.0.0 and prior to 8.0.3, can cause performance slowdown when processing multiple packets. Version 8.0.3 resolves this issue.
Recommendations Update to Suricata version 8.0.3 or later.

Exploit

Fix

Resource Exhaustion

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2026-00954
CVE-2026-22263
GHSA-RWC5-HXJ6-HWX7
OPENSUSE-SU-2026:10082-1

Affected Products

Suricata