PT-2026-4995 · Open Information Security Foundation · Suricata

Catenacyber

·

Published

2026-01-01

·

Updated

2026-01-27

·

CVE-2026-22263

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Suricata versions 8.0.0 through 8.0.2
Description Suricata is a network IDS, IPS and NSM engine. An inefficiency in http1 headers parsing, present in versions starting from 8.0.0 and prior to 8.0.3, can cause performance slowdown when processing multiple packets. Version 8.0.3 resolves this issue.
Recommendations Update to Suricata version 8.0.3 or later.

Exploit

Fix

Resource Exhaustion

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

BDU:2026-00954
CVE-2026-22263
GHSA-RWC5-HXJ6-HWX7
OPENSUSE-SU-2026:10082-1

Affected Products

Suricata