Denial of Service Vulnerability in Wireshark by The Wireshark Team
CVE-2026-9759

5.5MEDIUM

Key Information:

Vendor

Wireshark

Status
Vendor
CVE Published:
27 May 2026

What is CVE-2026-9759?

A vulnerability in the ROHC protocol dissector in Wireshark versions 4.6.0 through 4.6.5 and 4.4.0 through 4.4.15 could lead to a crash of the application. This flaw may allow attackers to exploit the dissector, resulting in a denial of service condition that disrupts network monitoring and analysis. It is crucial for users to apply the latest updates to mitigate this risk and ensure the integrity of their network analysis tools. For further details, refer to the official documentation.

Affected Version(s)

Wireshark 4.6.0 < 4.6.6

Wireshark 4.4.0 < 4.4.16

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Arjun Basnet @ Securin Labs
.