Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Gpt 5.5

#48177of 57,454
5.9Total CVSS
Vulnerabilities · 1
PT-2026-95644
5.9
2026-07-21
Suricata · Suricata · CVE-2026-57226
**Name of the Vulnerable Software and Affected Versions** Suricata versions prior to 7.0.17 Suricata versions prior to 8.0.6 **Description** HTTP SWF decompression, when using the non-default `swf-decompression` feature and an unsafe `decompress-depth`, may use the configured depth for allocation in `src/util-file-decompression.c` instead of limiting it to the actual data requirement of the Flash file. A specially crafted SWF response can trigger an integer-related heap buffer overflow, leading to a crash of the system. The default disabled state of the feature and the default depth are not affected. **Recommendations** Update to version 7.0.17 or later. Update to version 8.0.6 or later. As a temporary mitigation, disable the `swf-decompression` feature.