Back

MEDIUM

Heap-based Buffer Overflow in Wireshark

Published Apr 30, 2026

Description

iLBC audio codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service

Affected products

Remediation

Vendor solution

Upgrade to version 4.6.5 or above

Red Hat mitigation

Users should avoid opening untrusted capture files or processing network traffic from untrusted sources with Wireshark. If Wireshark is not actively used on a system, consider removing the `wireshark` package to eliminate the attack surface.

Weaknesses (2)

References (7)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner GitLab
Published Apr 30, 2026
Updated Apr 30, 2026
Reserved Apr 17, 2026

CISA Vulnrichment

Updated Apr 30, 2026

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Apr 30, 2026
Bugzilla 2464040

ENISA EUVD

Assigner GitLab
Published Apr 30, 2026
Updated Apr 30, 2026

GitHub

No data