CVE-2026-5653 - Vulnerability Analysis
MediumCVSS: 5.5Last Updated: May 1, 2026
Wireshark - Denial of Service
Published: April 30, 2026Updated: May 1, 2026PoC Available
Overview
Wireshark 4.4.0 to 4.4.14 and 4.6.0 to 4.6.4 contain a denial of service caused by a crash in the DCP-ETSI protocol dissector, letting remote attackers cause application crash, exploit requires crafted packets.
Severity & Score
Severity: Medium
CVSS Score: 5.5
Impact
Attackers can cause Wireshark to crash, resulting in denial of service.
Mitigation
Upgrade to a version later than 4.6.4 or 4.4.14.
References
Related Resources
Details
- CVE ID
- CVE-2026-5653
- Severity
- Medium
- CVSS Score
- 5.5
- Type
- undefined
- Status
- confirmed
CWE
- CWE-122
CVSS Metrics
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H