Changeflow GovPing Data Privacy & Cybersecurity CERT-FR: Multiple Vulnerabilities in Suricata
Priority review Notice Added Final

CERT-FR: Multiple Vulnerabilities in Suricata

Favicon for www.cert.ssi.gouv.fr CERT-FR Security Advisories
Published March 18th, 2026
Detected March 18th, 2026
Email

Summary

CERT-FR has issued a security advisory regarding multiple vulnerabilities discovered in Suricata versions 7.0.x and 8.0.x. Users are advised to consult the Suricata security bulletin for patch information.

What changed

The French National Cybersecurity Agency (ANSSI), through CERT-FR, has published an advisory (CERTFR-2026-AVI-0309) detailing multiple vulnerabilities affecting Suricata network intrusion detection system versions 7.0.x prior to 7.0.15 and 8.0.x prior to 8.0.4. The specific nature of the security issues is not detailed by the publisher, but they are identified by CVEs including CVE-2026-31931 through CVE-2026-31935 and CVE-2026-31937.

Organizations utilizing the affected Suricata versions should immediately consult the official Suricata security bulletin to obtain and apply the necessary patches. Failure to do so could expose systems to unspecified security risks, potentially leading to unauthorized access or disruption. While no specific penalties are mentioned, maintaining the security of critical systems is paramount for compliance and operational integrity.

What to do next

  1. Review Suricata version usage and identify affected installations.
  2. Consult the Suricata security bulletin for patch details.
  3. Apply available patches to Suricata versions 7.0.x and 8.0.x.

Source document (simplified)

Premier Ministre S.G.D.S.N

Agence nationale
de la sécurité des
systèmes d'information

Paris, le 18 mars 2026 N° CERTFR-2026-AVI-0309 Affaire suivie par: CERT-FR

Avis du CERT-FR

Objet: Multiples vulnérabilités dans Suricata

Gestion du document

| Référence | CERTFR-2026-AVI-0309 |
| Titre | Multiples vulnérabilités dans Suricata |
| Date de la première version | 18 mars 2026 |
| Date de la dernière version | 18 mars 2026 |
| Source(s) | Bulletin de sécurité Suricata suricata-8-0-4-and-7-0-15-released du 17 mars 2026 |
Une gestion de version détaillée se trouve à la fin de ce document.


Risque

  • Non spécifié par l'éditeur

Systèmes affectés

  • Suricata versions 7.0.x antérieures à 7.0.15
  • Suricata versions 8.0.x antérieures à 8.0.4

Résumé

De multiples vulnérabilités ont été découvertes dans Suricata. Elles permettent à un attaquant de provoquer un problème de sécurité non spécifié par l'éditeur.

Solutions

Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).

Documentation


Gestion détaillée du document

  1. le 18 mars 2026 Version initiale

Source

Analysis generated by AI. Source diff and links are from the original.

Classification

Agency
CERT-FR
Published
March 18th, 2026
Instrument
Notice
Legal weight
Non-binding
Stage
Final
Change scope
Substantive

Who this affects

Applies to
Technology companies
Geographic scope
National (France)

Taxonomy

Primary area
Cybersecurity
Operational domain
IT Security
Topics
Vulnerability Management Network Security

Get Data Privacy & Cybersecurity alerts

Weekly digest. AI-summarized, no noise.

Free. Unsubscribe anytime.

Get alerts for this source

We'll email you when CERT-FR Security Advisories publishes new changes.

Free. Unsubscribe anytime.