Improper Initialization in Suricata - CVE-2026-57229
Published: July 22, 2026
Suricata
Detailed vulnerability description
The vulnerability allows a remote attacker to bypass detection rules based on file data, file names, or extracted URLs.
The vulnerability exists due to improper initialization in the SMTP MIME parser when processing Content-Type: message/rfc822 encapsulation. A remote attacker can send a crafted SMTP MIME message to bypass detection rules based on file data, file names, or extracted URLs.
The issue occurs when SMTP MIME decoding is enabled.