CVE-2026-22263
published 2026-01-27CVE-2026-22263: Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, inefficiency in http1 headers parsing can lead to slowdown…
PriorityP428medium5.3CVSS 3.1
AVNACLPRNUINSUCNINAL
EPSS
0.40%
31.9th percentile
Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, inefficiency in http1 headers parsing can lead to slowdown over multiple packets. Version 8.0.3 patches the issue. No known workarounds are available.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | suricata | < suricata 1:8.0.3-1 (forky) | suricata 1:8.0.3-1 (forky) |
| oisf | suricata | — | — |
| oisf | suricata | >= 0 < 1:8.0.3-1 | 1:8.0.3-1 |
| oisf | suricata | >= 8.0.0 < 8.0.3 | 8.0.3 |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
osv5.3MEDIUM
vendor_debian5.3LOW
vendor_redhat5.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2026-22263: Suricata is a network IDS, IPS and NSM engine
osv·2026-01-27·CVSS 5.3
CVE-2026-22263 [MEDIUM] CVE-2026-22263: Suricata is a network IDS, IPS and NSM engine
Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, inefficiency in http1 headers parsing can lead to slowdown over multiple packets. Version 8.0.3 patches the issue. No known workarounds are available.
Red Hat
suricata: Suricata: Denial of Service via inefficient HTTP/1 header parsing
vendor_redhat·2026-01-27·CVSS 5.3
CVE-2026-22263 [MEDIUM] CWE-1050 suricata: Suricata: Denial of Service via inefficient HTTP/1 header parsing
suricata: Suricata: Denial of Service via inefficient HTTP/1 header parsing
Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, inefficiency in http1 headers parsing can lead to slowdown over multiple packets. Version 8.0.3 patches the issue. No known workarounds are available.
A flaw was found in Suricata, a network Intrusion Detection System (IDS), Intrusion Prevention System (IPS), and Network Security Monitoring (NSM) engine. A remote attacker can exploit an inefficiency in HTTP/1 header parsing by sending multiple packets with specially crafted headers. This can lead to a significant slowdown in the system's performance, resulting in a Denial of Service (DoS).
Statement: This vulnerability has a MODERATE impact. Inefficiency in HTTP/
Debian
CVE-2026-22263: suricata - Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and pri...
vendor_debian·2026·CVSS 5.3
CVE-2026-22263 [MEDIUM] CVE-2026-22263: suricata - Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and pri...
Suricata is a network IDS, IPS and NSM engine. Starting in version 8.0.0 and prior to version 8.0.3, inefficiency in http1 headers parsing can lead to slowdown over multiple packets. Version 8.0.3 patches the issue. No known workarounds are available.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 1:8.0.3-1)
sid: resolved (fixed in 1:8.0.3-1)
trixie: resolved
No detection rules found.
No public exploits indexed.
2026-01-27
Published