CVE-2026-15172
published 2026-07-08CVE-2026-15172: FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
PriorityP418medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.10%
0.9th percentile
FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | >= 4.4.0 < 4.4.17 | 4.4.17 |
| wireshark | wireshark | >= 4.6.0 < 4.6.7 | 4.6.7 |
| wireshark_foundation | wireshark | >= 4.4.0 < 4.4.17 | 4.4.17 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.7 | 4.6.7 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Wireshark up to 4.4.16/4.6.6 NOTIFY Protocol denial of service
vuldb·2026-07-08·CVSS 5.5
CVE-2026-15172 [MEDIUM] Wireshark up to 4.4.16/4.6.6 NOTIFY Protocol denial of service
A vulnerability described as problematic has been identified in Wireshark up to 4.4.16/4.6.6. The impacted element is an unknown function of the component NOTIFY Protocol. Executing a manipulation can lead to denial of service.
This vulnerability is tracked as CVE-2026-15172. The attack can be launched remotely. No exploit exists.
GHSA
FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
ghsa_unreviewed·2026-07-08
CVE-2026-15172 [MEDIUM] CWE-606 FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Red Hat
wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash
vendor_redhat·2026-07-08·CVSS 5.5
CVE-2026-15172 [MEDIUM] CWE-1286 wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash
wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash
FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
A flaw was found in Wireshark. A local user could exploit this vulnerability by processing a specially crafted FMP/NOTIFY protocol packet. This could lead to a denial of service (DoS) due to a crash in the protocol dissector, making the application unavailable.
Statement: This Moderate impact flaw in Wireshark allows a local attacker to cause a denial of service by processing a specially crafted FMP/NOTIFY protocol packet. The vulnerability requires user interaction, as an attacker must trick a local user into opening a malicious packet capture file, limiting the attack surface.
Mitigation: To mitiga
GitLab
Unchecked Input for Loop Condition in Wireshark
vendor_gitlab·2026-07-08·CVSS 5.5
CVE-2026-15172 [MEDIUM] CWE-606 Unchecked Input for Loop Condition in Wireshark
Unchecked Input for Loop Condition in Wireshark
FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Affected products: Wireshark
Affected versions: >=4.6.0, =4.4.0, <4.4.17 (affected)
Solution: Upgrade to version 4.6.7 or above
Credit: Gabriel Rodrigues
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-15172 wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash [fedora-all]
bugzilla·2026-07-09·CVSS 5.5
CVE-2026-15172 [MEDIUM] CVE-2026-15172 wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash [fedora-all]
CVE-2026-15172 wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
Bugzilla
CVE-2026-15172 wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash
bugzilla·2026-07-08·CVSS 5.5
CVE-2026-15172 [MEDIUM] CVE-2026-15172 wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash
CVE-2026-15172 wireshark: Wireshark: Denial of service via FMP/NOTIFY protocol dissector crash
FMP/NOTIFY protocol dissector crash in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows denial of service
2026-07-08
Published