Impact
Suricata, from version 8.0.0 through 8.0.6, contains a null pointer dereference in the dataset loader for JSON or NDJSON formats. If a configured dataset contains a non‑string value for the key used as a value_key, the engine dereferences a NULL pointer during startup, a configuration test, or rule reload, resulting in an immediate crash. This effect is a denial of service for the IDS/IPS component, preventing it from processing traffic until it is restarted.
Affected Systems
The affected product is the open source Intrusion Detection System maintained by OISF, Suricata. Versions from 8.0.0 up to and including 8.0.6 are impacted; all later releases contain the fix. No other vendors or products are listed.
Risk and Exploitability
The CVSS score of 3.3 indicates a moderate severity. EPSS is not available, and the vulnerability is not listed in CISA KEV, suggesting it has not been widely exploited in the wild. The likely attack vector is through a malicious or corrupted dataset or rule feed, which could be supplied remotely by an attacker who has read access to the update mechanism, or locally by an insider. Because the flaw manifests as a crash rather than code execution, the risk is limited to denial of service.
OpenCVE Enrichment