Description Suricata is a network IDS, IPS and NSM engine. Prior to versions 7.0.15 and 8.0.4, flooding of craft HTTP2 continuation frames can lead to memory exhaustion, usually resulting in the Suricata process being shut down by the operating system. This issue has been patched in versions 7.0.15 and 8.0.4.
CVSS vector CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H Exploitability: 3.9 | Impact: 3.6 Attack Vector: Network
Complexity: Low
Privileges: None
User Interaction: None
Scope: Unchanged
Confidentiality: None
Integrity: None
Availability: High
Affected Packages3 packages
🔴 Vulnerability Details3 OSV CVE-2026-31935: (Suricata is a network IDS, IPS and NSM engine ↗ 2026-04-03 ▶ CVEList Suricata http2: unbounded resource consumption ↗ 2026-04-02 ▶ OSV CVE-2026-31935: Suricata is a network IDS, IPS and NSM engine ↗ 2026-04-02 ▶
📋 Vendor Advisories2 Red Hat Suricata: Suricata: Denial of Service via HTTP2 continuation frame flooding ↗ 2026-04-02 ▶ Debian CVE-2026-31935: suricata - Suricata is a network IDS, IPS and NSM engine. Prior to versions 7.0.15 and 8.0.... ↗ 2026 ▶
🕵️ Threat Intelligence13 Wiz CVE-2026-22262 Impact, Exploitability, and Mitigation Steps | Wiz ↗ ▶ Wiz CVE-2026-22264 Impact, Exploitability, and Mitigation Steps | Wiz ↗ ▶ Wiz CVE-2026-31937 Impact, Exploitability, and Mitigation Steps | Wiz ↗ ▶ Wiz CVE-2026-31935 Impact, Exploitability, and Mitigation Steps | Wiz ↗ ▶ Wiz CVE-2026-31932 Impact, Exploitability, and Mitigation Steps | Wiz ↗ ▶ Show 8 more