Описание
Security update for wireshark
This update for wireshark fixes the following issues:
Update to version 4.6.7:
- CVE-2026-5299: ICMPv6 dissector crash (bsc#1263757).
- CVE-2026-5401: AFP dissector crash (bsc#1263756).
- CVE-2026-5402: TLS dissector crash and possible code execution (bsc#1263755).
- CVE-2026-5403: SBC audio codec crash (bsc#1263765).
- CVE-2026-5404: K12 RF5 file parser crash (bsc#1263766).
- CVE-2026-5405: RDP dissector crash (bsc#1263767).
- CVE-2026-5406: FC-SWILS dissector crash (bsc#1263754).
- CVE-2026-5407: SMB2 dissector infinite loop (bsc#1263753).
- CVE-2026-5408: BT-DHT dissector crash (bsc#1263752).
- CVE-2026-5409: Monero dissector crash (bsc#1263751).
- CVE-2026-5653: DCP-ETSI dissector crash (bsc#1263750).
- CVE-2026-5654: AMR-NB audio codec crash (bsc#1263749).
- CVE-2026-5655: SDP dissector crash (bsc#1263748).
- CVE-2026-5656: Profile import crash and possible code execution (bsc#1263809).
- CVE-2026-5657: iLBC audio codec crash (bsc#1263747).
- CVE-2026-6519: MBIM protocol dissector infinite loop (bsc#1263746).
- CVE-2026-6520: OpenFlow v6 protocol dissector infinite loop (bsc#1263745).
- CVE-2026-6521: OpenFlow v5 protocol dissector infinite loops (bsc#1263744).
- CVE-2026-6522: RPKI-Router protocol dissector infinite loop (bsc#1263743).
- CVE-2026-6523: GNW protocol dissector infinite loop (bsc#1263742).
- CVE-2026-6524: MySQL protocol dissector crash (bsc#1263741).
- CVE-2026-6525: IEEE 802.11 protocol dissector crash (bsc#1263810).
- CVE-2026-6526: RTSP protocol dissector crash (bsc#1263740).
- CVE-2026-6527: ASN.1 PER dissector crash (bsc#1263739).
- CVE-2026-6528: TLS protocol dissector infinite loop (bsc#1263738).
- CVE-2026-6529: iLBC audio codec crash (bsc#1263737).
- CVE-2026-6530: DCP-ETSI protocol dissector crash (bsc#1263736).
- CVE-2026-6531: SANE protocol dissector infinite loop (bsc#1263735).
- CVE-2026-6532: Kismet protocol dissector crash (bsc#1263734).
- CVE-2026-6533: Dissection engine LZ77 decompression crash (bsc#1263733).
- CVE-2026-6534: USB HID dissector infinite loop (bsc#1263732).
- CVE-2026-6535: Dissection engine zlib decompression crash (bsc#1263731).
- CVE-2026-6536: DLMS/COSEM dissector infinite loop (bsc#1263730).
- CVE-2026-6537: ZigBee dissector crash (bsc#1263729).
- CVE-2026-6538: BEEP dissector crash (bsc#1263728).
- CVE-2026-6867: SMB2 protocol dissector crash (bsc#1263727).
- CVE-2026-6868: HTTP protocol dissector crash (bsc#1263762).
- CVE-2026-6869: WebSocket protocol dissector crash (bsc#1263726).
- CVE-2026-6870: GSM RP protocol dissector crash (bsc#1263725).
- CVE-2026-7375: UDS protocol dissector infinite loop (bsc#1263761).
- CVE-2026-7376: Sharkd utility crash (bsc#1263760).
- CVE-2026-7378: Sharkd utility crash (bsc#1263759).
- CVE-2026-7379: Sharkd utility memory leak (bsc#1263758).
- CVE-2026-9759: ROHC protocol dissector crash (bsc#1266670).
- CVE-2026-15163: Denial of Service via multiple protocol dissector infinite loops (bsc#1271133).
- CVE-2026-15164: Denial of Service vulnerability in ciscodump (bsc#1271134).
- CVE-2026-15165: Denial of Service via TLS ECH decryptor crash (bsc#1271135).
- CVE-2026-15166: Denial of Service via IEEE 802.11 protocol dissector crash (bsc#1271136).
- CVE-2026-15167: Denial of Service via DBS Etherwatch file parser crash (bsc#1271137).
- CVE-2026-15168: BLF file parser allows possible information disclosure (bsc#1271138).
- CVE-2026-15169: Denial of Service via UMTS FP protocol dissector crash (bsc#1271139).
- CVE-2026-15170: Denial of service via Z39.50 protocol dissector crash (bsc#1271140).
- CVE-2026-15171: Denial of service via SSH protocol dissector crash (bsc#1271141).
- CVE-2026-15172: Denial of service via FMP/NOTIFY protocol dissector crash (bsc#1271142).
- CVE-2026-15173: Denial of Service via pcapng file parser crash (bsc#1271143).
- CVE-2026-15174: Denial of Service via Catapult DCT2000 protocol dissector crash (bsc#1271144).
Список пакетов
SUSE Linux Enterprise Module for Basesystem 15 SP7
SUSE Linux Enterprise Module for Desktop Applications 15 SP7
Ссылки
- Link for SUSE-SU-2026:3501-1
- E-Mail link for SUSE-SU-2026:3501-1
- SUSE Security Ratings
- SUSE Bug 1263725
- SUSE Bug 1263726
- SUSE Bug 1263727
- SUSE Bug 1263728
- SUSE Bug 1263729
- SUSE Bug 1263730
- SUSE Bug 1263731
- SUSE Bug 1263732
- SUSE Bug 1263733
- SUSE Bug 1263734
- SUSE Bug 1263735
- SUSE Bug 1263736
- SUSE Bug 1263737
- SUSE Bug 1263738
- SUSE Bug 1263739
- SUSE Bug 1263740
- SUSE Bug 1263741
Описание
Multiple protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allow denial of service
Затронутые продукты
Ссылки
- CVE-2026-15163
- SUSE Bug 1271133
Описание
Crash in ciscodump 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15164
- SUSE Bug 1271134
Описание
TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15165
- SUSE Bug 1271135
Описание
IEEE 802.11 protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15166
- SUSE Bug 1271136
Описание
DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15167
- SUSE Bug 1271137
Описание
BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
Затронутые продукты
Ссылки
- CVE-2026-15168
- SUSE Bug 1271138
Описание
UMTS FP protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15169
- SUSE Bug 1271139
Описание
Z39.50 protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15170
- SUSE Bug 1271140
Описание
SSH protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15171
- SUSE Bug 1271141
Описание
FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15172
- SUSE Bug 1271142
Описание
pcapng file parser crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15173
- SUSE Bug 1271143
Описание
Catapult DCT2000 protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-15174
- SUSE Bug 1271144
Описание
ICMPv6 PvD protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5299
- SUSE Bug 1263757
Описание
AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5401
- SUSE Bug 1263756
Описание
TLS protocol dissector heap overflow in Wireshark 4.6.0 to 4.6.4 allows denial of service and possible code execution
Затронутые продукты
Ссылки
- CVE-2026-5402
- SUSE Bug 1263755
Описание
SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Затронутые продукты
Ссылки
- CVE-2026-5403
- SUSE Bug 1263765
Описание
K12 RF5 file parser crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5404
- SUSE Bug 1263766
Описание
RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Затронутые продукты
Ссылки
- CVE-2026-5405
- SUSE Bug 1263767
Описание
FC-SWILS protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5406
- SUSE Bug 1263754
Описание
SMB2 protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5407
- SUSE Bug 1263753
Описание
BT-DHT protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5408
- SUSE Bug 1263752
Описание
Monero protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5409
- SUSE Bug 1263751
Описание
DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5653
- SUSE Bug 1263750
Описание
AMR-NB codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5654
- SUSE Bug 1263749
Описание
SDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5655
- SUSE Bug 1263748
Описание
Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Затронутые продукты
Ссылки
- CVE-2026-5656
- SUSE Bug 1263809
Описание
iLBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-5657
- SUSE Bug 1263747
Описание
MBIM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6519
- SUSE Bug 1263746
Описание
OpenFlow v6 protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6520
- SUSE Bug 1263745
Описание
OpenFlow v5 protocol dissector infinite loops in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6521
- SUSE Bug 1263744
Описание
RPKI-Router protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6522
- SUSE Bug 1263743
Описание
GNW protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6523
- SUSE Bug 1263742
Описание
MySQL protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6524
- SUSE Bug 1263741
Описание
IEEE 802.11 protocol dissector crash in Wireshark 4.6.0 to 4.6.4
Затронутые продукты
Ссылки
- CVE-2026-6525
- SUSE Bug 1263810
Описание
RTSP protocol dissector crash in Wireshark 4.6.0 to 4.6.4
Затронутые продукты
Ссылки
- CVE-2026-6526
- SUSE Bug 1263740
Описание
ASN.1 PER protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6527
- SUSE Bug 1263739
Описание
TLS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6528
- SUSE Bug 1263738
Описание
iLBC audio codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6529
- SUSE Bug 1263737
Описание
DCP-ETSI protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6530
- SUSE Bug 1263736
Описание
SANE protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6531
- SUSE Bug 1263735
Описание
Kismet protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6532
- SUSE Bug 1263734
Описание
Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6533
- SUSE Bug 1263733
Описание
USB HID protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6534
- SUSE Bug 1263732
Описание
Dissection engine zlib decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6535
- SUSE Bug 1263731
Описание
DLMS/COSEM protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4
Затронутые продукты
Ссылки
- CVE-2026-6536
- SUSE Bug 1263730
Описание
ZigBee protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6537
- SUSE Bug 1263729
Описание
BEEP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6538
- SUSE Bug 1263728
Описание
SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6867
- SUSE Bug 1263727
Описание
HTTP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6868
- SUSE Bug 1263762
Описание
WebSocket protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6869
- SUSE Bug 1263726
Описание
GSM RP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-6870
- SUSE Bug 1263725
Описание
UDS protocol dissector infinite loop in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-7375
- SUSE Bug 1263761
Описание
Crash in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-7376
- SUSE Bug 1263760
Описание
Crash in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-7378
- SUSE Bug 1263759
Описание
Memory leak in sharkd 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-7379
- SUSE Bug 1263758
Описание
ROHC protocol dissector crash in Wireshark 4.6.0 to 4.6.5 and 4.4.0 to 4.4.15 allows denial of service
Затронутые продукты
Ссылки
- CVE-2026-9759
- SUSE Bug 1266670