CVE-2026-22260

Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, Suricata can crash with a stack overflow. Version 8.0.3 patches the issue. As a workaround, use default values for `request-body-limit` and `response-body-limit`.
Configurations

Configuration 1 (hide)

cpe:2.3:a:oisf:suricata:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-27 18:15

Updated : 2026-01-29 21:03


NVD link : CVE-2026-22260

Mitre link : CVE-2026-22260

CVE.ORG link : CVE-2026-22260


JSON object : View

Products Affected

oisf

  • suricata
CWE
CWE-674

Uncontrolled Recursion

CWE-787

Out-of-bounds Write