Description
Multiple vulnerabilities were found in Wireshark. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code.
Below is a complete list of vulnerabilities:
- A denial of service vulnerability in Monero protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in BT-DHT protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in FC-SWILS protocol dissector can be exploited to cause a denial of service.
- Infinite loop vulnerability in SMB2 protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in ICMPv6 PvD protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in AFP Spotlight protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in K12 RF5 file parser can be exploited to cause a denial of service.
- A vulnerability in SBC codec can be exploited to cause denial of service or execute arbitrary code.
- A vulnerability in RDP protocol dissector can be exploited to cause denial of service or execute arbitrary code.
- A denial of service vulnerability in AMR-NB codec can be exploited to cause a denial of service.
- A denial of service vulnerability in iLBC codec can be exploited to cause a denial of service.
- Profile import path traversal vulnerability in Wireshark can be exploited to cause denial of service or execute arbitrary code.
- A denial of service vulnerability in DCP-ETSI protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in BEEP protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in ZigBee protocol dissector can be exploited to cause a denial of service.
- Dissection engine zlib decompression vulnerability can be exploited to cause a denial of service.
- Infinite loop vulnerability in USB HID protocol dissector can be exploited to cause a denial of service.
- Dissection engine LZ77 decompression vulnerability can be exploited to cause a denial of service.
- A denial of service vulnerability in Kismet protocol dissector can be exploited to cause a denial of service.
- Infinite loop vulnerability in SANE protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in iLBC audio codec can be exploited to cause a denial of service.
- A denial of service vulnerability in ASN.1 PER protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in MySQL protocol dissector can be exploited to cause a denial of service.
- Infinite loop vulnerability in GNW protocol dissector can be exploited to cause a denial of service.
- Infinite loop vulnerability in OpenFlow v5 protocol dissector can be exploited to cause a denial of service.
- Infinite loop vulnerability in OpenFlow v6 protocol dissector can be exploited to cause a denial of service.
- Infinite loop vulnerability in MBIM protocol dissector can be exploited to cause a denial of service.
- Infinite loop vulnerability in RPKI-Router protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in GSM RP protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in WebSocket protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in SMB2 protocol dissector can be exploited to cause a denial of service.
- A denial of service vulnerability in HTTP protocol dissector can be exploited to cause a denial of service.
Original advisories
- wnpa-sec-2026-09 · BT-DHT dissector crash
- wnpa-sec-2026-10 · FC-SWILS dissector crash
- wnpa-sec-2026-11 · SMB2 dissector infinite loop
- wnpa-sec-2026-12 · ICMPv6 dissector crash
- wnpa-sec-2026-13 · AFP dissector crash
- wnpa-sec-2026-15 · K12 RF5 file parser crash
- wnpa-sec-2026-16 · SBC audio codec crash
- wnpa-sec-2026-17 · RDP dissector crash
- wnpa-sec-2026-18 · AMR-NB audio codec crash
- wnpa-sec-2026-20 · iLBC audio codec crash
- wnpa-sec-2026-21 · Profile import crash and possible code execution
- wnpa-sec-2026-22 · DCP-ETSI dissector crash
- wnpa-sec-2026-23 · BEEP dissector crash
- wnpa-sec-2026-24 · ZigBee dissector crash
- wnpa-sec-2026-26 · Dissection engine zlib decompression crash
- wnpa-sec-2026-27 · USB HID dissector infinite loop
- wnpa-sec-2026-28 · Dissection engine LZ77 decompression crash
- wnpa-sec-2026-29 · Kismet protocol dissector crash
- wnpa-sec-2026-30 · SANE protocol dissector infinite loop
- wnpa-sec-2026-31 · DCP-ETSI protocol dissector crash
- wnpa-sec-2026-32 · iLBC audio codec crash
- wnpa-sec-2026-34 · ASN.1 PER dissector crash
- wnpa-sec-2026-37 · MySQL protocol dissector crash
- wnpa-sec-2026-38 · GNW protocol dissector infinite loop
- wnpa-sec-2026-39 · OpenFlow v5 protocol dissector infinite loops
- wnpa-sec-2026-40 · OpenFlow v6 protocol dissector infinite loop
- wnpa-sec-2026-41 · MBIM protocol dissector infinite loop
- wnpa-sec-2026-42 · RPKI-Router protocol dissector infinite loop
- wnpa-sec-2026-43 · GSM RP protocol dissector crash
- wnpa-sec-2026-44 · WebSocket protocol dissector crash
- wnpa-sec-2026-45 · SMB2 protocol dissector crash
- wnpa-sec-2026-46 · HTTP protocol dissector crash
Exploitation
Public exploits exist for this vulnerability.
Related products
CVE list
- CVE-2026-6868 critical
- CVE-2026-5299 high
- CVE-2026-5401 high
- CVE-2026-5406 high
- CVE-2026-5407 high
- CVE-2026-5408 high
- CVE-2026-5409 high
- CVE-2026-5653 critical
- CVE-2026-5654 critical
- CVE-2026-5657 critical
- CVE-2026-6519 critical
- CVE-2026-6520 critical
- CVE-2026-6521 high
- CVE-2026-6522 high
- CVE-2026-6523 high
- CVE-2026-6524 high
- CVE-2026-6527 high
- CVE-2026-6529 high
- CVE-2026-6530 high
- CVE-2026-6531 high
- CVE-2026-6532 high
- CVE-2026-6533 high
- CVE-2026-6534 high
- CVE-2026-6535 high
- CVE-2026-6537 high
- CVE-2026-6538 high
- CVE-2026-6867 high
- CVE-2026-6869 high
- CVE-2026-6870 high
- CVE-2026-5403 critical
- CVE-2026-5404 high
- CVE-2026-5405 critical
- CVE-2026-5656 critical
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!