CVE-2026-31932: Suricata krb5: quadratic complexity in krb5 buffering
Suricata is a network IDS, IPS and NSM engine. Prior to versions 7.0.15 and 8.0.4, inefficiency in KRB5 buffering can lead to performance degradation. This issue has been patched in versions 7.0.15 and 8.0.4.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-31932?
CVE-2026-31932 has a severity level indicating potential performance degradation due to inefficient KRB5 buffering.
How do I fix CVE-2026-31932?
To fix CVE-2026-31932, update your Suricata installation to version 7.0.15 or later, or to version 8.0.4 or later.
What versions of Suricata are affected by CVE-2026-31932?
Versions of Suricata prior to 7.0.15 and between 8.0.0 and 8.0.4 are affected by CVE-2026-31932.
What type of vulnerability is CVE-2026-31932?
CVE-2026-31932 is classified as a performance vulnerability due to quadratic complexity in KRB5 buffering.
Can CVE-2026-31932 impact network security?
While CVE-2026-31932 primarily affects performance, degraded performance could indirectly impact network security and monitoring effectiveness.