Quadratic Complexity Issue in Suricata Email Handling Engine
CVE-2026-31934
7.5HIGH
What is CVE-2026-31934?
Suricata, a sophisticated network intrusion detection and prevention system, has a vulnerability that arises from quadratic complexity during URL searches in MIME-encoded messages processed over SMTP. This performance-related issue is present in versions 8.0.0 to 8.0.3, potentially leading to significant slowdowns during email analysis. Users are advised to upgrade to version 8.0.4 or later, where this issue has been addressed, ensuring improved performance and stability.
Affected Version(s)
suricata >= 8.0.0, < 8.0.4
