CVE-2026-15165
published 2026-07-08CVE-2026-15165: TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
PriorityP416medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.13%
3.2th percentile
TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | >= 4.6.0 < 4.6.7 | 4.6.7 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.7 | 4.6.7 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash
vendor_redhat·2026-07-08·CVSS 7.5
CVE-2026-15165 [HIGH] CWE-617 wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash
wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash
TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
A flaw was found in Wireshark. This vulnerability allows a remote attacker to cause a denial of service by crafting a malicious TLS Encrypted Client Hello (ECH) packet. When Wireshark attempts to decrypt this malformed packet, it can lead to a crash of the application, making it unavailable.
Package: wireshark (Red Hat Enterprise Linux 10) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 6) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 7) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 8) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 9) - Fix deferred
GitLab
Heap-based Buffer Overflow in Wireshark
vendor_gitlab·2026-07-08·CVSS 5.5
CVE-2026-15165 [MEDIUM] CWE-122 Heap-based Buffer Overflow in Wireshark
Heap-based Buffer Overflow in Wireshark
TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
Affected products: Wireshark
Affected versions: >=4.6.0, <4.6.7 (affected)
Solution: Upgrade to version 4.6.7 or above
Credit: Claude and Ada Logics
VulDB
Wireshark up to 4.6.6 TLS ECH Decryptor denial of service
vuldb·2026-07-08·CVSS 5.5
CVE-2026-15165 [MEDIUM] Wireshark up to 4.6.6 TLS ECH Decryptor denial of service
A vulnerability, which was classified as problematic, has been found in Wireshark up to 4.6.6. The impacted element is an unknown function of the component TLS ECH Decryptor. The manipulation leads to denial of service.
This vulnerability is documented as CVE-2026-15165. The attack can be initiated remotely. There is not any exploit available.
GHSA
TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
ghsa_unreviewed·2026-07-08
CVE-2026-15165 [MEDIUM] CWE-122 TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-15165 wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash [fedora-all]
bugzilla·2026-07-09·CVSS 7.5
CVE-2026-15165 [HIGH] CVE-2026-15165 wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash [fedora-all]
CVE-2026-15165 wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
Bugzilla
CVE-2026-15165 wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash
bugzilla·2026-07-08·CVSS 7.5
CVE-2026-15165 [HIGH] CVE-2026-15165 wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash
CVE-2026-15165 wireshark: Wireshark: Denial of Service via TLS ECH decryptor crash
TLS ECH decryptor crash in Wireshark 4.6.0 to 4.6.6 allows denial of service
2026-07-08
Published