Back

HIGH

Double Free in Wireshark

Published Apr 30, 2026

Description

iLBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Affected products

Remediation

Vendor solution

Upgrade to version 4.6.5 or above

Red Hat mitigation

To mitigate this issue, users should avoid opening untrusted or suspicious network capture files. Additionally, exercise caution when performing live packet captures on untrusted networks or from untrusted sources, as processing specially crafted packets could trigger the denial of service.

Weaknesses (2)

References (8)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner GitLab
Published Apr 30, 2026
Updated Apr 30, 2026
Reserved Apr 6, 2026
CISA Vulnrichment
Updated Apr 30, 2026
NVD
Status Analyzed
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Apr 30, 2026
ENISA EUVD
Assigner GitLab
Published Apr 30, 2026
Updated Apr 30, 2026
Exploited since n/a
EUVD-2026-26326