Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-15163

Опубликовано: 08 июл. 2026
Источник: redhat
CVSS3: 5.5

Описание

Multiple protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allow denial of service

A flaw was found in Wireshark. A local user could trigger multiple protocol dissector infinite loops by providing specially crafted network traffic for analysis. This could lead to a Denial of Service (DoS) condition, making the application unresponsive.

Отчет

This Moderate impact flaw in Wireshark allows a local attacker to trigger multiple protocol dissector infinite loops, leading to a denial of service. Exploitation requires a local user to open and analyze specially crafted network traffic, limiting the attack vector to interactive use cases rather than automated or remote exploitation.

Меры по смягчению последствий

To mitigate this issue, users should avoid analyzing untrusted or suspicious network capture files with Wireshark. Exercise caution when opening network traffic from unknown sources to prevent triggering the denial of service condition.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10wiresharkFix deferred
Red Hat Enterprise Linux 6wiresharkOut of support scope
Red Hat Enterprise Linux 7wiresharkOut of support scope
Red Hat Enterprise Linux 8wiresharkFix deferred
Red Hat Enterprise Linux 9wiresharkFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-835
https://bugzilla.redhat.com/show_bug.cgi?id=2498302wireshark: Wireshark: Denial of Service via multiple protocol dissector infinite loops

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 1 месяца назад

Multiple protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allow denial of service

CVSS3: 5.5
nvd
около 1 месяца назад

Multiple protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allow denial of service

CVSS3: 5.5
debian
около 1 месяца назад

Multiple protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.6 ...

CVSS3: 7.5
redos
6 дней назад

Уязвимость wireshark

CVSS3: 7.5
redos
6 дней назад

Уязвимость wireshark

5.5 Medium

CVSS3

Уязвимость CVE-2026-15163