Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-76885

Опубликовано: 19 авг. 2026
Источник: redhat
CVSS3: 3.1
EPSS Низкий

Описание

Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

A flaw was found in Wireshark. This vulnerability, a buffer over-read, occurs when the Tektronix K12xx file parser processes a specially crafted file. A remote attacker could exploit this by convincing a user to open a malicious Tektronix K12xx file, leading to a crash of the Wireshark application and resulting in a denial of service.

Отчет

A buffer over-read was found in the Tektronix K12xx file parser in Wireshark versions 4.4.0 through 4.4.18 and 4.6.0 through 4.6.7. Red Hat Enterprise Linux 6, 7, 8, and 9 ship Wireshark versions prior to the affected range and are not vulnerable. Red Hat Enterprise Linux 10 and Red Hat In-Vehicle OS ship an affected version of Wireshark.

Меры по смягчению последствий

Do not open untrusted packet capture files or capture traffic from untrusted networks with Wireshark.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10wiresharkFix deferred
Red Hat Enterprise Linux 6wiresharkNot affected
Red Hat Enterprise Linux 7wiresharkNot affected
Red Hat Enterprise Linux 8wiresharkNot affected
Red Hat Enterprise Linux 9wiresharkNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-125
https://bugzilla.redhat.com/show_bug.cgi?id=2520090wireshark: Wireshark: Denial of Service via Tektronix K12xx file parsing

EPSS

Процентиль: 7%
0.00175
Низкий

3.1 Low

CVSS3

Связанные уязвимости

CVSS3: 3.1
ubuntu
7 дней назад

Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

CVSS3: 3.1
nvd
8 дней назад

Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

CVSS3: 3.1
debian
8 дней назад

Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.1 ...

CVSS3: 3.1
github
8 дней назад

Tektronix K12xx file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

EPSS

Процентиль: 7%
0.00175
Низкий

3.1 Low

CVSS3