Denial of Service Vulnerability in Wireshark by the DCP-ETSI Protocol Dissector
CVE-2026-6530

5.5MEDIUM

Key Information:

Vendor

Wireshark

Status
Vendor
CVE Published:
30 April 2026

What is CVE-2026-6530?

An issue has been identified in Wireshark's DCP-ETSI protocol dissector that could cause the application to crash, leading to a denial of service. This vulnerability affects multiple versions, starting from Wireshark 4.4.0 to 4.4.14 and 4.6.0 to 4.6.4. Users of the affected Wireshark versions are urged to upgrade to the latest release to mitigate potential exploitation. The crash may be triggered by specially crafted packets, placing network professionals at risk during analysis. For more details, refer to the official security advisory.

Affected Version(s)

Wireshark 4.6.0 < 4.6.5

Wireshark 4.4.0 < 4.4.15

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Alexandre de Oliveira
.