Denial of Service Vulnerability in Wireshark Product by The Wireshark Foundation
CVE-2026-76884

3.1LOW

Key Information:

Vendor

Wireshark

Status
Vendor
CVE Published:
19 August 2026

What is CVE-2026-76884?

In versions 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18 of Wireshark, the ERF file parser may crash the application, resulting in denial of service. This vulnerability can disrupt network analysis and monitoring activities, compromising the reliability of the tool. Users should ensure their Wireshark application is updated to the latest secure version to avoid potential exploitation.

Affected Version(s)

Wireshark 4.6.0 < 4.6.8

Wireshark 4.4.0 < 4.4.18

References

CVSS V3.1

Score:
3.1
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jaime Cavero
.