Type Confusion in Suricata - CVE-2026-45762
Published: June 3, 2026
Suricata
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to access of resource using incompatible type in the IP defragmentation tracker lookup when processing crafted fragmented IPv4 and IPv6 traffic. A remote attacker can send specially crafted fragmented packets to cause a denial of service.
An IPv6 fragment may be associated with an IPv4 defragmentation tracker during defragmentation.