Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-76879

Опубликовано: 19 авг. 2026
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

A flaw was found in Wireshark. A remote attacker could exploit a vulnerability in the C12.22 protocol dissector, which is responsible for interpreting network traffic. By sending a specially crafted network packet, an attacker could cause the Wireshark application to crash, leading to a denial of service (DoS). This prevents the legitimate use of the network analysis tool.

Отчет

This is an Important denial of service vulnerability in Wireshark's C12.22 protocol dissector. A remote attacker can trigger a crash by sending a specially crafted network packet, disrupting network analysis operations. This impact is significant for systems where Wireshark is actively deployed for network traffic inspection, as it can prevent legitimate use of the tool without requiring user interaction or elevated privileges.

Меры по смягчению последствий

To reduce the risk of exploitation, avoid analyzing untrusted network capture files with Wireshark. It is also recommended to run Wireshark within a sandboxed environment to limit the potential impact of a denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10wiresharkUnder investigation
Red Hat Enterprise Linux 6wiresharkUnder investigation
Red Hat Enterprise Linux 7wiresharkUnder investigation
Red Hat Enterprise Linux 8wiresharkUnder investigation
Red Hat Enterprise Linux 9wiresharkUnder investigation

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-617
https://bugzilla.redhat.com/show_bug.cgi?id=2520098wireshark: Wireshark: Denial of Service via C12.22 protocol dissector crash

EPSS

Процентиль: 20%
0.00279
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
7 дней назад

C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

CVSS3: 7.5
nvd
8 дней назад

C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

CVSS3: 7.5
debian
8 дней назад

C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 ...

CVSS3: 7.5
github
8 дней назад

C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

CVSS3: 7.5
fstec
21 день назад

Уязвимость функции decrypt_packet() анализатора трафика компьютерных сетей Wireshark, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 20%
0.00279
Низкий

7.5 High

CVSS3