Threat Intel

v0.1

← CVEs

CVE-2026-22259

HIGH 7.5
Published
2026-01-27
Last Modified
2026-01-30
Affected Apps
1
Affected Devices
1
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, specially crafted traffic can cause Suricata to consume large amounts of memory while parsing DNP3 traffic. This can lead to the process slowing down and running out of memory, potentially leading to it getting killed by the OOM killer. Versions 8.0.3 or 7.0.14 contain a patch. As a workaround, disable the DNP3 parser in the suricata yaml (disabled by default).
Affected Applications in Environment 1
suricata v1:6.0.1-3+deb11u1
1 device
Affected Devices 1
sectap1 Linux
References 4