Denial of Service Vulnerability in Wireshark by the Wireshark Foundation
CVE-2026-76879
7.5HIGH
What is CVE-2026-76879?
A vulnerability in the C12.22 protocol dissector present in specified versions of Wireshark can lead to a crash, causing denial of service. This issue manifests when processing malformed C12.22 protocol packets, which may disrupt the normal functioning of the application. Users operating on affected versions are advised to upgrade to more secure releases to mitigate this risk.
Affected Version(s)
Wireshark 4.6.0 < 4.6.8
Wireshark 4.4.0 < 4.4.18
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Aisle Research (Dmitrijs Trizna, Luigino Camastra, Ze Sheng (O2Lab & TAMU), Igor Morgenstern)