Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-6538

Опубликовано: 30 апр. 2026
Источник: redhat
CVSS3: 6.5
EPSS Низкий

Описание

BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

A flaw was found in Wireshark. A remote attacker could exploit a crash in the BEEP (Blocks Extensible Exchange Protocol) dissector by crafting a malicious BEEP packet. This vulnerability leads to a Denial of Service (DoS), causing Wireshark to become unresponsive.

Меры по смягчению последствий

To mitigate this issue, disable the BEEP protocol dissector in Wireshark. This prevents the application from processing BEEP packets, thereby avoiding the vulnerability. This action can be performed within Wireshark's protocol preferences. Disabling the BEEP dissector will prevent analysis of BEEP protocol traffic.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10wiresharkFix deferred
Red Hat Enterprise Linux 6wiresharkFix deferred
Red Hat Enterprise Linux 7wiresharkFix deferred
Red Hat Enterprise Linux 8wiresharkFix deferred
Red Hat Enterprise Linux 9wiresharkFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1286
https://bugzilla.redhat.com/show_bug.cgi?id=2464044Wireshark: Wireshark: Denial of Service via BEEP protocol dissector crash

EPSS

Процентиль: 8%
0.0018
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
3 месяца назад

BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

CVSS3: 5.5
nvd
3 месяца назад

BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

CVSS3: 5.5
debian
3 месяца назад

BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to ...

CVSS3: 5.5
github
3 месяца назад

BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

CVSS3: 5.5
fstec
4 месяца назад

Уязвимость функции dissect_beep_tree() диссектора протокола BEEP анализатора трафика компьютерных сетей Wireshark, позволяющая нарушителю вызывать отказ в обслуживании

EPSS

Процентиль: 8%
0.0018
Низкий

6.5 Medium

CVSS3