DEV Community

Cover image for Suricata Patches Flaws Allowing Network Monitoring Bypass
BeyondMachines for BeyondMachines

Posted on Originally published at beyondmachines.net

Suricata Patches Flaws Allowing Network Monitoring Bypass

Summary

Suricata 8.0.7 fixes two vulnerabilities (CVE-2026-94084 and CVE-2026-94083) that allow unauthenticated attackers to crash the IDS/IPS engine. These flaws exploit the HTTP/2 and DoH2 parsers to create a monitoring blind spot for network bypass.

Take Action:

If you run Suricata for network monitoring, update it to version 8.0.7 ASAP. Older versions can be crashed remotely, leaving your network unmonitored and your attack detection blind. Until you patch, closely monitor that the Suricata service is actually running, because an unexpected stop may mean someone is already attacking you.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)