Inefficient Algorithmic Complexity in Suricata - CVE-2026-63447
Published: July 22, 2026
Suricata
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to inefficient algorithmic complexity in the FTP parser when processing crafted FTP command data after the configured transaction threshold is reached. A remote attacker can send specially crafted FTP traffic to cause a denial of service.
This may degrade packet processing and cause loss of monitoring visibility.