Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-15172

Опубликовано: 08 июл. 2026
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

A flaw was found in Wireshark. A local user could exploit this vulnerability by processing a specially crafted FMP/NOTIFY protocol packet. This could lead to a denial of service (DoS) due to a crash in the protocol dissector, making the application unavailable.

Отчет

This Moderate impact flaw in Wireshark allows a local attacker to cause a denial of service by processing a specially crafted FMP/NOTIFY protocol packet. The vulnerability requires user interaction, as an attacker must trick a local user into opening a malicious packet capture file, limiting the attack surface.

Меры по смягчению последствий

To mitigate this issue, users should avoid opening untrusted or suspicious packet capture files with Wireshark. Restricting access to systems running Wireshark and ensuring that only trusted network captures are analyzed can further reduce the risk of exploitation.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10wiresharkFix deferred
Red Hat Enterprise Linux 6wiresharkOut of support scope
Red Hat Enterprise Linux 7wiresharkOut of support scope
Red Hat Enterprise Linux 8wiresharkFix deferred
Red Hat Enterprise Linux 9wiresharkFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1286
https://bugzilla.redhat.com/show_bug.cgi?id=2498306wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash

EPSS

Процентиль: 2%
0.00122
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 1 месяца назад

FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

CVSS3: 5.5
nvd
около 1 месяца назад

FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service

CVSS3: 5.5
debian
около 1 месяца назад

FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4. ...

CVSS3: 5.5
redos
6 дней назад

Уязвимость wireshark

CVSS3: 5.5
redos
6 дней назад

Уязвимость wireshark

EPSS

Процентиль: 2%
0.00122
Низкий

5.5 Medium

CVSS3