Description
C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Published: 2026-08-19
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Immediate Patch
AI Analysis

Impact

Wireshark’s C12.22 protocol dissector contains a stack‑based buffer overflow that can be triggered when parsing certain malformed input, causing the application to crash. The vulnerability is classified as CWE‑121 and CWE‑617 and results in denial of service by terminating the Wireshark session.

Affected Systems

Wireshark Foundation’s Wireshark software is affected in versions 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18. The vendor recommends upgrading to 4.6.8 or later to remove the flaw.

Risk and Exploitability

The CVSS score of 7.5 indicates a high severity. The EPSS score is 0.00279 (less than 1%), and the vulnerability is not listed in KEV. While the official description does not specify the attacker’s required environment, it is reasonable to infer that the exploit requires feeding a crafted capture file to the dissector, which suggests a local or user‑initiated attack vector rather than a remote network‑based one.

Generated by OpenCVE AI on August 25, 2026 at 15:40 UTC.

Remediation

Vendor Solution

Upgrade to version 4.6.8 or above


OpenCVE Recommended Actions

  • Upgrade Wireshark to version 4.6.8 or later
  • If an upgrade cannot be performed immediately, run Wireshark with the minimum privileges necessary and restrict the ability to load capture files to trusted users only
  • Monitor Wireshark logs and system performance for unexpected crashes and investigate any incidents promptly

Generated by OpenCVE AI on August 25, 2026 at 15:40 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6471-1 wireshark security update
History

Tue, 01 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*

Tue, 25 Aug 2026 12:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-617
References
Metrics threat_severity

None

threat_severity

Important


Thu, 20 Aug 2026 01:15:00 +0000

Type Values Removed Values Added
First Time appeared Wireshark
Wireshark wireshark
Vendors & Products Wireshark
Wireshark wireshark

Wed, 19 Aug 2026 23:00:00 +0000

Type Values Removed Values Added
Description C12.22 protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Title Stack-based Buffer Overflow in Wireshark
Weaknesses CWE-121
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

Wireshark Wireshark
cve-icon MITRE

Status: PUBLISHED

Assigner: GitLab

Published:

Updated: 2026-08-20T15:26:30.512Z

Reserved: 2026-08-19T22:34:00.090Z

Link: CVE-2026-76879

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2026-08-19T23:16:18.700

Modified: 2026-09-01T15:19:58.567

Link: CVE-2026-76879

cve-icon Redhat

Severity : Important

Publid Date: 2026-08-19T22:44:00Z

Links: CVE-2026-76879 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-08-25T15:45:04Z

Weaknesses