CVE-2026-5401
published 2026-04-30CVE-2026-5401: AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
PriorityP418medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.12%
2.4th percentile
AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | 4.4.0 – 4.4.14 | — |
| wireshark | wireshark | 4.6.0 – 4.6.4 | — |
| wireshark_foundation | wireshark | >= 4.4.0 < 4.4.15 | 4.4.15 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.5 | 4.6.5 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GitLab
Uncontrolled Recursion in Wireshark
vendor_gitlab·2026-04-30·CVSS 5.5
CVE-2026-5401 [MEDIUM] CWE-674 Uncontrolled Recursion in Wireshark
Uncontrolled Recursion in Wireshark
AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Affected products: Wireshark
Affected versions: >=4.6.0, =4.4.0, <4.4.15 (affected)
Solution: Upgrade to version 4.6.5 or above
Credit: Brendan Coles
Red Hat
wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash
vendor_redhat·2026-04-30·CVSS 5.5
CVE-2026-5401 [MEDIUM] CWE-1287 wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash
wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash
A flaw was found in Wireshark. An attacker could craft a malicious network trace file that, when opened by a user, would trigger a crash in the AFP Spotlight protocol dissector. This vulnerability leads to a denial of service, making the application unavailable.
Mitigation: To mitigate this issue, users should avoid opening untrusted or suspicious network trace files with Wireshark. Exercise caution when handling files from unknown sources to prevent triggering the denial of service.
Package: wireshark (Red Hat Enterprise Linux 10) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 6) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 7) - Fix deferred
Package: wireshark (Red Hat Ente
GHSA
GHSA-772w-jxjv-xc3f: AFP Spotlight protocol dissector crash in Wireshark 4
ghsa_unreviewed·2026-04-30
CVE-2026-5401 [MEDIUM] CWE-674 GHSA-772w-jxjv-xc3f: AFP Spotlight protocol dissector crash in Wireshark 4
AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-5401 wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash [fedora-all]
bugzilla·2026-05-04·CVSS 5.5
CVE-2026-5401 [MEDIUM] CVE-2026-5401 wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash [fedora-all]
CVE-2026-5401 wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-5401 wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash
bugzilla·2026-04-30·CVSS 5.5
CVE-2026-5401 [MEDIUM] CVE-2026-5401 wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash
CVE-2026-5401 wireshark: Wireshark: Denial of service via AFP Spotlight protocol dissector crash
AFP Spotlight protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
2026-04-30
Published