Vulnerability in Suricata Network Security Monitoring Engine Affects SIP Parsing
CVE-2026-63449

3.7LOW

Key Information:

Vendor

Oisf

Status
Vendor
CVE Published:
18 September 2026

What is CVE-2026-63449?

Suricata, a prominent network Intrusion Detection System and Security Monitoring engine, has a significant vulnerability in its SIP parser that affects versions 8.0.0 to 8.0.6. The parser incorrectly stores request and response body lengths in 16-bit fields, which can lead to truncation of SIP bodies exceeding 65,536 bytes. This limitation may allow malicious content in the truncated section to bypass frame-based inspection, potentially compromising the effectiveness of security measures. This vulnerability was addressed in version 8.0.6, which is recommended for all users.

Affected Version(s)

suricata >= 8.0.0, < 8.0.6

References

CVSS V3.1

Score:
3.7
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.