CVE 7.5 HIGH

Suricata dnp3: unbounded transaction growth_CVE-2026-22259

7.5 / 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Description

Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, specially crafted traffic can cause Suricata to consume large amounts of memory while parsing DNP3 traffic. This can lead to the process slowing down and running out of memory, potentially leading to it getting killed by the OOM killer. Versions 8.0.3 or 7.0.14 contain a patch. As a workaround, disable the DNP3 parser in the suricata yaml (disabled by default).

Basic Information

ID CVE-2026-22259
Source GitHub_M
Published Jan 27, 2026 at 17:13

Affected Product

Vendor OISF
Product suricata
Version < 7.0.14
Affected Versions OISF suricata < 7.0.14
OISF suricata >= 8.0.0, < 8.0.3

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.