Wireshark patches multiple DoS vulnerabilities
ANSSI advises multiple Wireshark vulnerabilities in versions before 4.4.18 and 4.6.8 can be exploited to cause denial of service.
CERT-FR has issued an advisory covering multiple vulnerabilities in Wireshark, the widely-used network protocol analyzer, affecting versions 4.4.x prior to 4.4.18 and 4.6.x prior to 4.6.8. The flaws allow an attacker to trigger a denial-of-service condition, likely through malformed packet captures or crafted network traffic causing the dissector engine to crash or hang.
The advisory references 28 separate Wireshark security bulletins (wnpa-sec-2026-64 through wnpa-sec-2026-91), all published on 13 August 2026, indicating a batch of dissector-level bugs rather than a single flaw. No exploitation in the wild is reported; this is a routine vendor patch cycle. Organizations running Wireshark should update to the fixed versions to avoid disruption during packet analysis workflows, particularly in security operations and incident response environments where availability of the tool matters.
Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1012
This is the public brief
Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.
Start free