Out-of-bounds write in Suricata - CVE-2026-45770
Published: June 3, 2026
Suricata
Detailed vulnerability description
The vulnerability allows a remote attacker to bypass the Lua sandbox.
The vulnerability exists due to out-of-bounds write in the Lua detection state when registering excessive flow variables in a Lua rule. A remote attacker can load a crafted Lua script or rule to bypass the Lua sandbox.
This requires an affected Lua script or rule to be loaded.