Описание
Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| wireshark | fixed | 4.6.5-1 | package | |
| wireshark | no-dsa | bookworm | package |
Примечания
https://www.wireshark.org/security/wnpa-sec-2026-21.html
https://gitlab.com/wireshark/wireshark/-/issues/21115
EPSS
Связанные уязвимости
Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Уязвимость функции WiresharkZipHelper::unzip() профиля конфигурации анализатора трафика компьютерных сетей Wireshark, позволяющая нарушителю вызывать отказ в обслуживании или выполнить произвольный код
EPSS