Improper Output Neutralization for Logs in Suricata - #VU152926
Published: September 30, 2026
Vulnerability details
The vulnerability allows a remote attacker to corrupt PostgreSQL event and alert records.
The vulnerability exists due to improper output neutralization for logs in PostgreSQL EVE JSON logging when processing crafted backend responses ending in a ParameterStatus message. A remote attacker can send a crafted backend response to corrupt PostgreSQL event and alert records.
Unbalanced EVE JSON can disrupt downstream log processing.