Denial of Service Vulnerability in Wireshark by Riverbed Technology
CVE-2026-5409

5.5MEDIUM

Key Information:

Vendor

Wireshark

Status
Vendor
CVE Published:
30 April 2026

What is CVE-2026-5409?

A denial of service vulnerability has been identified in the Monero protocol dissector of specific versions of Wireshark. This flaw can be triggered when processing Monero protocol data, leading to application crashes, interrupting the normal functioning of the network analysis tool. Users running versions 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 are particularly at risk. The flaw emphasizes the importance of regular updates and a security-first approach for network administrators.

Affected Version(s)

Wireshark 4.6.0 < 4.6.5

Wireshark 4.4.0 < 4.4.15

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Brendan Coles
.