Heap-based buffer overflow in Suricata - CVE-2026-57226
Published: July 22, 2026
Suricata
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to a heap-based buffer overflow in SWF decompression depth handling when processing HTTP SWF decompression data. A remote attacker can send specially crafted SWF content to cause a denial of service.
Only deployments with swf-decompression enabled and a non-standard decompression depth configuration are vulnerable.