CVE-2026-45768

    Dashboard / Vulnerabilities / CVE-2026-45768

    CVE-2026-45768

    Published: 10 Sept 2026Last Modified: 12 Sept 2026

    Summary: Suricata ldap: unbounded responses per transaction can lead to resource exhaustion

    Details: Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Starting in version 8.0.0 and prior to version 8.0.5, LDAP transaction state could store an unbounded number of responses. Because LDAP can be processed over UDP, crafted traffic may cause Suricata to consume excessive memory, potentially resulting in denial of service. Version 8.0.5 contains a fix. As a workaround, disable LDAP application-layer parsing where it is not required. Alternatively, use a rule like `alert ldap any any -> any any (sid: 1; ldap.responses.count: >1024; bypass;)`.

    Affected packages

    Package

    Name:

    Purl:

    Affected ranges

    Type: GIT

    Events:

    Introduced- 9956286fb89f9cad9e9f95b99dc751f8666617b7

    Affected versions

    suricata-8.0.4
    suricata-8.0.3
    suricata-8.0.2
    suricata-8.0.1
    suricata-8.0.0

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    CVE-2026-45768 | CVE-DB