CVE-2026-15168
published 2026-07-08CVE-2026-15168: BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
PriorityP410low3.3CVSS 3.1
AVLACLPRNUIRSUCLINAN
EPSS
0.10%
1.2th percentile
BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | >= 4.4.0 < 4.4.17 | 4.4.17 |
| wireshark | wireshark | >= 4.6.0 < 4.6.7 | 4.6.7 |
| wireshark_foundation | wireshark | >= 4.4.0 < 4.4.17 | 4.4.17 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.7 | 4.6.7 |
CVSS provenance
nvdv3.13.3LOWCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
wireshark: Wireshark: Information disclosure in BLF file parser
vendor_redhat·2026-07-08·CVSS 3.3
CVE-2026-15168 [LOW] CWE-237 wireshark: Wireshark: Information disclosure in BLF file parser
wireshark: Wireshark: Information disclosure in BLF file parser
BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
A flaw was found in Wireshark. The BLF (Binary Logging Format) file parser allows for possible information disclosure. A remote attacker could exploit this vulnerability by enticing a user to open a specially crafted BLF file, leading to the disclosure of sensitive information.
Package: wireshark (Red Hat Enterprise Linux 10) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 6) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 7) - Out of support scope
Package: wireshark (Red Hat Enterprise Linux 8) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 9) - Fix deferred
GitLab
Use of Uninitialized Variable in Wireshark
vendor_gitlab·2026-07-08·CVSS 2.5
CVE-2026-15168 [LOW] CWE-457 Use of Uninitialized Variable in Wireshark
Use of Uninitialized Variable in Wireshark
BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
Affected products: Wireshark
Affected versions: >=4.6.0, =4.4.0, <4.4.17 (affected)
Solution: Upgrade to version 4.6.7 or above
Credit: Thai Duong Tran
GHSA
BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
ghsa_unreviewed·2026-07-09
CVE-2026-15168 [LOW] CWE-457 BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
VulDB
Wireshark up to 4.4.16/4.6.6 BLF File Parser information disclosure
vuldb·2026-07-09·CVSS 2.5
CVE-2026-15168 [LOW] Wireshark up to 4.4.16/4.6.6 BLF File Parser information disclosure
A vulnerability identified as problematic has been detected in Wireshark up to 4.4.16/4.6.6. The impacted element is an unknown function of the component BLF File Parser. Performing a manipulation results in information disclosure.
This vulnerability was named CVE-2026-15168. The attack may be initiated remotely. There is no available exploit.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-15168 wireshark: Wireshark: Information disclosure in BLF file parser [fedora-all]
bugzilla·2026-07-09·CVSS 3.3
CVE-2026-15168 [LOW] CVE-2026-15168 wireshark: Wireshark: Information disclosure in BLF file parser [fedora-all]
CVE-2026-15168 wireshark: Wireshark: Information disclosure in BLF file parser [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
Bugzilla
CVE-2026-15168 wireshark: Wireshark: Information disclosure in BLF file parser
bugzilla·2026-07-08·CVSS 3.3
CVE-2026-15168 [LOW] CVE-2026-15168 wireshark: Wireshark: Information disclosure in BLF file parser
CVE-2026-15168 wireshark: Wireshark: Information disclosure in BLF file parser
BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure
2026-07-08
Published