Denial of Service Vulnerability in Wireshark from the Vendor Wireshark
CVE-2026-76887

3.1LOW

Key Information:

Vendor

Wireshark

Status
Vendor
CVE Published:
19 August 2026

What is CVE-2026-76887?

A flaw in the Wireshark dissection engine has been discovered that can lead to a denial of service. This issue affects Wireshark versions 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18, allowing attackers to exploit the vulnerability and potentially crash the application, resulting in service interruption. Users are advised to update to secure versions to mitigate risk.

Affected Version(s)

Wireshark 4.6.0 < 4.6.8

Wireshark 4.4.0 < 4.4.18

References

CVSS V3.1

Score:
3.1
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Daniel Birtwhistle
.