CVE-2026-5403 - Vulnerability Analysis
HighCVSS: 7.8Last Updated: May 1, 2026
Wireshark - Buffer Overflow
Published: May 1, 2026Updated: May 1, 2026PoC Available
Overview
Wireshark 4.4.0 to 4.4.14 and 4.6.0 to 4.6.4 contain a buffer overflow caused by a crash in the SBC codec, letting attackers cause denial of service or possible code execution, exploit requires crafted input.
Severity & Score
Severity: High
CVSS Score: 7.8
Impact
Attackers can cause denial of service or potentially execute code remotely by triggering the SBC codec crash.
Mitigation
Update to a version later than 4.6.4 or 4.4.14.
References
Related Resources
Details
- CVE ID
- CVE-2026-5403
- Severity
- High
- CVSS Score
- 7.8
- Type
- buffer_overflow
- Status
- confirmed
CWE
- CWE-122
- CWE-787
CVSS Metrics
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H