BlackTreeCVE IntelligenceOfficial source evidencegithub.comVersioned article
Official source article · github.com
Release 7.0.17 · OISF/suricata · GitHub
BlackTree keeps a versioned source snapshot and links it to relevant CVE reports. The publisher remains authoritative for product applicability, release details and installation guidance.
Read the official article ↗Publishergithub.com
Article IDNo stable ID in source URL
Verified snapshot28 Sept 2026, 20:28 UTC
Linked CVEs7
Linked CVE reports
These are source relationships, not a claim that this article fixes every affected product or branch.
- CVE-2026-71855Suricata flow: IPv4/IPv6 hash collision can reuse wrong flow state
- CVE-2026-57223Suricata windows: unquoted LocalSystem service ImagePath can allow local privilege escalation
- CVE-2026-63448Suricata smb: some SMB flows can cause resource exhaustion
- CVE-2026-57227Suricata mqtt: unbounded resource consumption from repeated pubrec and pubrel messages
- CVE-2026-57226Suricata swf: heap buffer overflow in SWF decompression depth handling
- CVE-2026-57228Suricata smtp/mime: heap out-of-bounds read quoted-printable decoder
- CVE-2026-57222Suricata ippair: hash collision can cause incorrect state reuse across IPv4 and IPv6
Source and provenance
Original title: Release 7.0.17 · OISF/suricata · GitHub. Captured 28 Sept 2026, 20:28 UTC. The stored article is used for enrichment and change detection; BlackTree does not republish the publisher's full text here.
Open the publisher's current version ↗