Network Intrusion Detection System Vulnerability in Suricata by Open Information Security Foundation
CVE-2026-45752

5.9MEDIUM

Key Information:

Vendor

Oisf

Status
Vendor
CVE Published:
10 September 2026

What is CVE-2026-45752?

Suricata, a network Intrusion Detection and Prevention System, has a vulnerability that occurs during the processing of network traffic when specific detection transforms are chained. This flaw, present in versions 8.0.0 to 8.0.4, allows the decompression transform pipeline to access an inspection buffer that has already been reallocated and freed. This results in the potential for a crash in Suricata when processing harmful network traffic due to the application of maliciously crafted rules. Users are advised to upgrade to version 8.0.5, which has addressed this issue. As a temporary measure, avoid using detection rules that combine gunzip or zlib_deflate with a max-size greater than 4096 following another transform.

Affected Version(s)

suricata >= 8.0.0, < 8.0.5

References

CVSS V3.1

Score:
5.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.