CVE-2026-15167
published 2026-07-08CVE-2026-15167: DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
PriorityP418medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.16%
5.2th percentile
DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | >= 4.4.0 < 4.4.17 | 4.4.17 |
| wireshark | wireshark | >= 4.6.0 < 4.6.7 | 4.6.7 |
| wireshark_foundation | wireshark | >= 4.4.0 < 4.4.17 | 4.4.17 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.7 | 4.6.7 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
ghsa_unreviewed·2026-07-08
CVE-2026-15167 [HIGH] CWE-121 DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
VulDB
Wireshark up to 4.4.16/4.6.6 File Parser denial of service
vuldb·2026-07-08·CVSS 7.5
CVE-2026-15167 [HIGH] Wireshark up to 4.4.16/4.6.6 File Parser denial of service
A vulnerability has been found in Wireshark up to 4.4.16/4.6.6 and classified as problematic. This impacts an unknown function of the component File Parser. This manipulation causes denial of service.
This vulnerability appears as CVE-2026-15167. The attack may be initiated remotely. There is no available exploit.
Red Hat
wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash
vendor_redhat·2026-07-08·CVSS 5.5
CVE-2026-15167 [MEDIUM] CWE-1286 wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash
wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash
DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
A flaw was found in Wireshark. A remote attacker could exploit a vulnerability in the DBS Etherwatch file parser, leading to a crash of the application. This could result in a denial of service, making the Wireshark application unavailable to users.
Statement: Moderate: A denial of service vulnerability exists in Wireshark's DBS Etherwatch file parser. This flaw allows a remote attacker to trigger an application crash by processing a specially crafted file, impacting the availability of the network analysis tool. The vulnerability requires user interaction to open a malicious file or process untrusted netwo
GitLab
Stack-based Buffer Overflow in Wireshark
vendor_gitlab·2026-07-08·CVSS 7.5
CVE-2026-15167 [HIGH] CWE-121 Stack-based Buffer Overflow in Wireshark
Stack-based Buffer Overflow in Wireshark
DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Affected products: Wireshark
Affected versions: >=4.6.0, =4.4.0, <4.4.17 (affected)
Solution: Upgrade to version 4.6.7 or above
Credit: Nguyen Huu Trung
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-15167 wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash [fedora-all]
bugzilla·2026-07-09·CVSS 5.5
CVE-2026-15167 [MEDIUM] CVE-2026-15167 wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash [fedora-all]
CVE-2026-15167 wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Bugzilla
CVE-2026-15167 wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash
bugzilla·2026-07-08·CVSS 5.5
CVE-2026-15167 [MEDIUM] CVE-2026-15167 wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash
CVE-2026-15167 wireshark: Wireshark: Denial of Service via DBS Etherwatch file parser crash
DBS Etherwatch file parser crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
2026-07-08
Published