CVE-2026-0962Out-of-bounds Write in Foundation Wireshark

Severity
6.5MEDIUMNVD
CNA5.3
EPSS
0.0%
top 90.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 14

Description

SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4.4.0 to 4.4.12 allows denial of service

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

NVDwireshark/wireshark4.2.24.4.13+1
CVEListV5wireshark_foundation/wireshark4.6.04.6.3+1
Debianwireshark/wireshark< 4.4.13-0+deb13u1+1

🔴Vulnerability Details

3
GHSA
GHSA-fxww-56j7-2rh4: SOME/IP-SD protocol dissector crash in Wireshark 42026-01-14
CVEList
Out-of-bounds Write in Wireshark2026-01-14
OSV
CVE-2026-0962: SOME/IP-SD protocol dissector crash in Wireshark 42026-01-14

📋Vendor Advisories

2
Red Hat
Wireshark: Wireshark: Denial of Service via SOME/IP-SD protocol dissector crash2026-01-14
Debian
CVE-2026-0962: wireshark - SOME/IP-SD protocol dissector crash in Wireshark 4.6.0 to 4.6.2 and 4.4.0 to 4.4...2026

🕵️Threat Intelligence

1
Wiz
CVE-2026-0962 Impact, Exploitability, and Mitigation Steps | Wiz
CVE-2026-0962 — Out-of-bounds Write | cvebase