Denial of Service Vulnerability in Wireshark Versions 4.6.x and 4.4.x
CVE-2026-96422

5.5MEDIUM

Key Information:

Vendor

Wireshark

Status
Vendor
CVE Published:
29 September 2026

What is CVE-2026-96422?

A vulnerability in the frame protocol metadissector of Wireshark versions 4.6.0 to 4.6.8 and 4.4.0 to 4.4.18 can lead to a denial of service condition. This flaw may allow an attacker to crash the application, disrupting service and affecting network analysis tasks. Users are encouraged to update to patched versions to mitigate potential risks.

Affected Version(s)

Wireshark 4.6.0 < 4.6.9

Wireshark 4.4.0 < 4.4.19

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mayank Jangid (OpenSec Intelligence)
.