VORANT. Threat Intelligence Sign in Get the full feed

Wireshark Patches Multiple 2026 Vulnerabilities

medium vulnerability technology

Multiple vulnerabilities in Wireshark before 4.6.7 and 4.4.17 could allow remote denial of service and information disclosure.

ANSSI (CERT-FR) published an advisory covering multiple vulnerabilities in Wireshark, the widely used network protocol analyzer. The flaws affect Wireshark versions in the 4.6.x branch prior to 4.6.7 and all versions prior to 4.4.17, and could allow an attacker to trigger a remote denial of service or compromise the confidentiality of processed data.

The issues are tracked across twelve separate CVE identifiers and correspond to twelve distinct Wireshark security bulletins (wnpa-sec-2026-52 through wnpa-sec-2026-63) published by the Wireshark Foundation on 9 July 2026. No exploitation in the wild is mentioned; the advisory is a standard vendor patch notification. Users are advised to apply the fixes referenced in the official Wireshark security bulletins.

Mentioned in this report

Vulnerabilities CVE-2026-15163CVE-2026-15164CVE-2026-15165CVE-2026-15166CVE-2026-15167CVE-2026-15168CVE-2026-15169CVE-2026-15170CVE-2026-15171CVE-2026-15172CVE-2026-15173CVE-2026-15174

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0849

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free