Allocation of Resources Without Limits or Throttling in Suricata - CVE-2026-45765
Published: June 3, 2026
Suricata
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to allocation of resources without limits or throttling in the DNP3 reassembly logic when processing crafted DNP3 traffic. A remote attacker can send specially crafted DNP3 traffic to cause a denial of service.
DNP3 is not enabled by default.