CVE-2026-31933: Suricata stream: quadratic complexity in stream inspection
Published Apr 2, 2026
·Updated
Suricata is a network IDS, IPS and NSM engine. Prior to versions 7.0.15 and 8.0.4, specially crafted traffic can cause Suricata to slow down, affecting performance in IDS mode. This issue has been patched in versions 7.0.15 and 8.0.4.
Affected Software
2 affected components
OISF Suricata<7.0.15
OISF Suricata>=8.0.0<8.0.4
Event History
Apr 2, 2026
CVE Published
via MITRE·02:03 PM
Data Sourced
via MITRE·02:03 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·02:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-31933?
CVE-2026-31933 has a moderate severity level as it can cause performance degradation in Suricata's IDS mode.
2
How do I fix CVE-2026-31933?
To fix CVE-2026-31933, upgrade Suricata to version 7.0.15 or later, or 8.0.4 or later.
3
What versions of Suricata are affected by CVE-2026-31933?
CVE-2026-31933 affects versions of Suricata prior to 7.0.15 and versions from 8.0.0 to 8.0.3.
4
What impact does CVE-2026-31933 have on system performance?
CVE-2026-31933 can cause significant slowdowns in Suricata's performance when processing specially crafted traffic.
5
Is there a patch available for CVE-2026-31933?
Yes, CVE-2026-31933 has been patched in Suricata versions 7.0.15 and 8.0.4.