CVE-2026-45761

    Dashboard / Vulnerabilities / CVE-2026-45761

    CVE-2026-45761

    Published: 10 Sept 2026Last Modified: 11 Sept 2026

    Summary: Suricata detect: case-insensitive frame handling can cause heap buffer overflow during rule load

    Details: Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, a crafted rule using mixed-case frame syntax could trigger a heap buffer overflow while Suricata is loading signatures. The issue is reached during rule parsing/loading rather than by network traffic alone. Versions 7.0.16 and 8.0.5 contain a fix. As a workaround, preprocess rules to check that frames are all lowercase and/or only load trusted rulesets.

    Affected packages

    Package

    Name:

    Purl:

    Affected ranges

    Type: GIT

    Events:

    Introduced- 9956286fb89f9cad9e9f95b99dc751f8666617b7

    Affected versions

    suricata-8.0.4
    suricata-8.0.3
    suricata-8.0.2
    suricata-8.0.1
    suricata-8.0.0

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    CVE-2026-45761 | CVE-DB