Improper Handling of Length Parameter Inconsistency in Suricata - #VU152929
Published: September 30, 2026
Vulnerability details
The vulnerability allows a remote attacker to bypass PostgreSQL response inspection.
The vulnerability exists due to improper handling of length parameter inconsistency in the PostgreSQL response parser when processing malformed RowDescription or DataRow responses. A remote attacker can send a malformed PostgreSQL server response to bypass PostgreSQL response inspection.
Only deployments with PostgreSQL parsing enabled are affected. Raw stream inspection and packet forwarding continue.