Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-45751

Suricata is a network Intrusion Detection System, Intrusion Prevention System and Network Security Monitoring engine. Prior to versions 7.0.16 and 8.0.5, Suricata's inspection-buffer helper could leave an inspection pointer referencing freed memory after a chained transform caused the backing buffer to be reallocated. The issue is reached during a specific network traffic processing, and requires a specific but not malicious rule. Versions 7.0.16 and 8.0.5 contain a fix. As a workaround, avoid rules that chain `dotprefix` transform after another one.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 41.6%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2026-45751
  • Oisf » Suricata » Version: Any
    cpe:2.3:a:oisf:suricata:*
  • Oisf » Suricata » Version: 8.0.0
    cpe:2.3:a:oisf:suricata:8.0.0
  • Oisf » Suricata » Version: 8.0.1
    cpe:2.3:a:oisf:suricata:8.0.1
  • Oisf » Suricata » Version: 8.0.2
    cpe:2.3:a:oisf:suricata:8.0.2
  • Oisf » Suricata » Version: 8.0.3
    cpe:2.3:a:oisf:suricata:8.0.3
  • Oisf » Suricata » Version: 8.0.4
    cpe:2.3:a:oisf:suricata:8.0.4


Contact Us

Shodan ® - All rights reserved