Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-76920

Опубликовано: 19 авг. 2026
Источник: redhat
CVSS3: 4.7
EPSS Низкий

Описание

3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

A flaw was found in Wireshark. This vulnerability, located in the 3gpp phone log file parser, could allow a local attacker to trigger a crash by enticing a user to open a specially crafted log file. This could lead to a Denial of Service (DoS).

Отчет

This Moderate impact vulnerability in Wireshark's 3gpp phone log file parser requires a local attacker to trick a user into opening a specially crafted log file. Successful exploitation could lead to a denial of service, affecting the availability of the Wireshark application.

Меры по смягчению последствий

To mitigate this issue, users should avoid opening 3gpp phone log files from untrusted or suspicious sources with Wireshark. Exercise caution when handling files from unknown origins to prevent potential denial of service.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10wiresharkFix deferred
Red Hat Enterprise Linux 6wiresharkNot affected
Red Hat Enterprise Linux 7wiresharkNot affected
Red Hat Enterprise Linux 8wiresharkNot affected
Red Hat Enterprise Linux 9wiresharkFix deferred

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-787
https://bugzilla.redhat.com/show_bug.cgi?id=2520094wireshark: Wireshark: Denial of Service via 3gpp phone log file parser out-of-bounds write

EPSS

Процентиль: 1%
0.00095
Низкий

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
ubuntu
29 дней назад

3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

CVSS3: 4.7
nvd
29 дней назад

3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

CVSS3: 4.7
debian
29 дней назад

3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 ...

CVSS3: 4.7
github
29 дней назад

3gpp phone log file parser crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service

CVSS3: 4.7
fstec
около 1 месяца назад

Уязвимость механизма обработки журнала телефонных звонков 3gpp анализатора трафика компьютерных сетей Wireshark, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 1%
0.00095
Низкий

4.7 Medium

CVSS3