Network Security Monitoring Vulnerability in Suricata by Open Information Security Foundation
CVE-2026-57229
5.3MEDIUM
What is CVE-2026-57229?
The MIME parser in Suricata versions 8.0.0 through 8.0.6 contains a flaw that fails to fully reset its state when processing certain encapsulated Content-Type messages. As a result, an outer MIME part's encoding or filename state may inadvertently leak into the inner message. This could enable crafted emails to bypass detection mechanisms based on file data, file names, or extracted URLs when SMTP MIME decoding is active. The issue is addressed in Suricata version 8.0.6.
Affected Version(s)
suricata >= 8.0.0, < 8.0.6
