BUSMASTER File Parser Denial of Service in Wireshark
CVE-2026-76926
3.1LOW
What is CVE-2026-76926?
A vulnerability within the BUSMASTER file parser in several versions of Wireshark allows an abnormal exit, leading to denial of service. This issue affects versions 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18. When processing certain BUSMASTER files, unexpected conditions can trigger a crash, causing interruptions in service and potentially affecting network analysis workflows. It is crucial for users to stay informed about this vulnerability and apply the necessary updates to mitigate the risk. Further details can be found in the official Wireshark security advisory as well as in GitLab work items.
Affected Version(s)
Wireshark 4.6.0 < 4.6.8
Wireshark 4.4.0 < 4.4.18
References
CVSS V3.1
Score:
3.1
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Aisle Research (Dmitrijs Trizna, Luigino Camastra, Ze Sheng (O2Lab & TAMU), Igor Morgenstern)