Description
ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Published: 2026-08-19
Score: 5.3 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is an uninitialized variable in the ESS protocol dissector of Wireshark. When the dissector processes certain ESS packets, the uninitialized data can cause a crash. An attacker who delivers a crafted ESS packet—typically by delivering a malicious capture file—can trigger the crash, resulting in a denial‑of‑service condition for the user running Wireshark.

Affected Systems

Wireshark Foundation Wireshark versions 4.6.0 through 4.6.7 and 4.4.0 through 4.4.18 are affected.

Risk and Exploitability

The CVSS score of 5.3 indicates moderate severity. No EPSS score is available and the vulnerability is not listed in the CISA KEV catalog, suggesting limited observed exploitation. The likely attack vector is a crafted ESS packet processed by a local Wireshark instance, which requires the attacker to convince a user to open a malicious capture file or otherwise have Wireshark dissect the traffic. Although remote exploitation is possible in that sense, it depends on user interaction, lowering the overall exploitation probability. Nevertheless, any crash of Wireshark interrupts security monitoring and could impact critical workflows.

Generated by OpenCVE AI on August 20, 2026 at 07:54 UTC.

Remediation

Vendor Solution

Upgrade to version 4.6.8 or above


OpenCVE Recommended Actions

  • Upgrade Wireshark to version 4.6.8 or later (or to the latest release if newer).
  • If an immediate upgrade to 4.6.8 is not possible, upgrade to at least 4.4.19 to cover the affected 4.4.x range.
  • Until an upgrade is applied, disable the ESS protocol dissector in Wireshark preferences to prevent processing of potentially malicious ESS packets.

Generated by OpenCVE AI on August 20, 2026 at 07:54 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6471-1 wireshark security update
History

Mon, 31 Aug 2026 19:30:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:wireshark:wireshark:*:*:*:*:*:*:*:*

Thu, 20 Aug 2026 01:30:00 +0000

Type Values Removed Values Added
First Time appeared Wireshark
Wireshark wireshark
Vendors & Products Wireshark
Wireshark wireshark

Wed, 19 Aug 2026 23:00:00 +0000

Type Values Removed Values Added
Description ESS protocol dissector crash in 4.6.0 to 4.6.7 and 4.4.0 to 4.4.18 allows denial of service
Title Use of Uninitialized Variable in Wireshark
Weaknesses CWE-457
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L'}


Subscriptions

Wireshark Wireshark
cve-icon MITRE

Status: PUBLISHED

Assigner: GitLab

Published:

Updated: 2026-08-20T15:26:29.757Z

Reserved: 2026-08-19T22:44:20.536Z

Link: CVE-2026-76919

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2026-08-19T23:16:20.600

Modified: 2026-08-31T19:13:54.477

Link: CVE-2026-76919

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-20T08:00:03Z

Weaknesses
  • CWE-457

    Use of Uninitialized Variable