Vulnerability in Suricata Network Security Monitoring Engine Affects SIP Parsing
CVE-2026-63449
3.7LOW
What is CVE-2026-63449?
Suricata, a prominent network Intrusion Detection System and Security Monitoring engine, has a significant vulnerability in its SIP parser that affects versions 8.0.0 to 8.0.6. The parser incorrectly stores request and response body lengths in 16-bit fields, which can lead to truncation of SIP bodies exceeding 65,536 bytes. This limitation may allow malicious content in the truncated section to bypass frame-based inspection, potentially compromising the effectiveness of security measures. This vulnerability was addressed in version 8.0.6, which is recommended for all users.
Affected Version(s)
suricata >= 8.0.0, < 8.0.6
