Denial of Service Vulnerability in Wireshark by the Vendor Wireshark
CVE-2026-76889

4.7MEDIUM

Key Information:

Vendor

Wireshark

Status
Vendor
CVE Published:
19 August 2026

What is CVE-2026-76889?

A vulnerability exists in the UMTS FP protocol dissector of Wireshark, which can lead to a denial of service. This issue affects multiple versions between 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18, causing the application to crash unexpectedly when processing certain packets. Attackers could exploit this vulnerability to disrupt network analysis by sending specially crafted packets, facilitating a denial of service scenario.

Affected Version(s)

Wireshark 4.6.0 < 4.6.8

Wireshark 4.4.0 < 4.4.18

References

CVSS V3.1

Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Jaime Cavero
.