suricata (1:7.0.10-1+deb13u3) trixie; urgency=medium
authorAndreas Dolp <dev@andreas-dolp.de>
Sun, 22 Feb 2026 12:28:52 +0000 (13:28 +0100)
committerAndreas Dolp <dev@andreas-dolp.de>
Sun, 22 Feb 2026 12:28:52 +0000 (13:28 +0100)
commit05f27ea83162149e4517138aa5023b53821a8bfd
treeb2738c0345ef0b128626d8d7ac7b1243de309bfa
parent27526ba4c8a31c8e09981e9d8fb2f54952b494dc
parent5436dca2cb28bc3570fcaac27bef1a7c82aa8394
suricata (1:7.0.10-1+deb13u3) trixie; urgency=medium

  * Fix CVE-2026-22258 in 7.0.10.
    Cherry-Picked from:
    * f82a388d0283725cb76782cf64e8341cab370830
    * df389f8a43a06c718bb336ea082d6c80d6fefda0
    * c9b80e5affe073ce9d95d0c935a8d67647c83bf7
  * Fix CVE-2026-22262 in 7.0.10.
    Cherry-Picked from:
    * 32609e6896f9079c175665a94005417cec7637eb
    * 27a2180bceaa3477419c78c54fce364398d011f1
  * Fix CVE-2026-22264 in 7.0.10.
    Cherry-Picked from 5789a3d3760dbf33d93fc56c27bd9529e5bdc8f2.
  * Fix CVE-2026-22259 in 7.0.10.
    Cherry-Picked from:
    * 63225d5f8ef64cc65164c0bb1800730842d54942
    * 635af8dc8be09667689be71d781912718ca1aa49
    * fdd79bdb14488244604729f1d68ca4bc60000dbd
    * a6d950315d9b6c1e35c10c24d9bb7128d422c21f
    With this fix, DNP3 has reduced the default maximum number of
    outstanding transactions from 500 down to 32.
    Read the update instructions for Suricata 7.0.14 for more details.
  * Fix CVE-2026-22261 in 7.0.10.
    Cherry-Picked from:
    * 44d0c81f537f230e9215c769453fb4d7214217a1
    * 7e704a3f50690b5f5d5cc573147ef41449fe37ac

[dgit import unpatched suricata 1:7.0.10-1+deb13u3]
55 files changed:
debian/building-in-ci.sh
debian/changelog
debian/control
debian/copyright
debian/libhtp-0.5.24-1.install
debian/libhtp-0.5.24-1.lintian-overrides
debian/libhtp-0.5.24-1.symbols
debian/patches/CVE-2025-53538.patch
debian/patches/CVE-2025-59147.patch
debian/patches/CVE-2025-64330.patch
debian/patches/CVE-2025-64331.patch
debian/patches/CVE-2025-64332.patch
debian/patches/CVE-2025-64333.patch
debian/patches/CVE-2025-64344.patch
debian/patches/CVE-2026-22258_1.patch
debian/patches/CVE-2026-22258_2.patch
debian/patches/CVE-2026-22258_3.patch
debian/patches/CVE-2026-22259_1.patch
debian/patches/CVE-2026-22259_2.patch
debian/patches/CVE-2026-22259_3.patch
debian/patches/CVE-2026-22259_4.patch
debian/patches/CVE-2026-22261_1.patch
debian/patches/CVE-2026-22261_2.patch
debian/patches/CVE-2026-22262_1.patch
debian/patches/CVE-2026-22262_2.patch
debian/patches/CVE-2026-22264.patch
debian/patches/avoid-to-include-if_tunnel-h.patch
debian/patches/configure-clang-variable.patch
debian/patches/cross.patch
debian/patches/debian-default-cfg.patch
debian/patches/fix-repeated-builds.patch
debian/patches/import-sockio-h.patch
debian/patches/llc.patch
debian/patches/no-use-gnu.patch
debian/patches/reproducible.patch
debian/patches/series
debian/patches/with-ebpf-includes.patch
debian/rules
debian/source/format
debian/suricata.README.Debian
debian/suricata.default
debian/suricata.dirs
debian/suricata.init
debian/suricata.install
debian/suricata.lintian-overrides
debian/suricata.logrotate
debian/suricata.maintscript
debian/suricata.manpages
debian/suricata.preinst
debian/suricata.service
debian/tests/control
debian/tests/systemd-service-test.sh
debian/upstream/metadata
debian/upstream/signing-key.asc
debian/watch