Back

MEDIUM

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') in Wireshark

Published Apr 30, 2026

Description

K12 RF5 file parser crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Affected products

Remediation

Vendor solution

Upgrade to version 4.6.5 or above

Red Hat mitigation

To mitigate this issue, users should exercise caution and avoid opening K12 RF5 files from untrusted or unknown sources. As Wireshark is a tool for network analysis, it is recommended to only process files obtained from trusted origins.

References (7)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner GitLab
Published Apr 30, 2026
Updated May 1, 2026
Reserved Apr 2, 2026

CISA Vulnrichment

Updated May 1, 2026

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Apr 30, 2026
Bugzilla 2464275

ENISA EUVD

Assigner GitLab
Published Apr 30, 2026
Updated May 1, 2026

GitHub

No data