Denial of Service Vulnerability in Wireshark Versions 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14
CVE-2026-5299
5.5MEDIUM
What is CVE-2026-5299?
A vulnerability exists in Wireshark versions 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 due to a flaw in the processing of ICMPv6 Privacy Extensions (PvD) protocol dissector. This flaw can lead to a crash, allowing an attacker to potentially exploit the weakness to achieve a denial of service. Proper handling and analysis of network traffic are compromised, highlighting the necessity for immediate updates to ensure network security and reliability.
Affected Version(s)
Wireshark 4.6.0 < 4.6.5
Wireshark 4.4.0 < 4.4.15