CVE-2026-5403
published 2026-05-01CVE-2026-5403: SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
PriorityP434high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
0.16%
5.7th percentile
SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | >= 4.4.0 < 4.4.15 | 4.4.15 |
| wireshark | wireshark | >= 4.6.0 < 4.6.5 | 4.6.5 |
| wireshark_foundation | wireshark | >= 4.4.0 < 4.4.15 | 4.4.15 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.5 | 4.6.5 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Wireshark up to 4.4.14/4.6.4 SBC Codec heap-based overflow (ID 21103 / Nessus ID 313009)
vuldb·2026-05-07·CVSS 7.8
CVE-2026-5403 [HIGH] Wireshark up to 4.4.14/4.6.4 SBC Codec heap-based overflow (ID 21103 / Nessus ID 313009)
A vulnerability was found in Wireshark up to 4.4.14/4.6.4. It has been declared as critical. This issue affects some unknown processing of the component SBC Codec. The manipulation results in heap-based buffer overflow.
This vulnerability was named CVE-2026-5403. The attack may be performed from remote. There is no available exploit.
It is recommended to upgrade the affected component.
GHSA
GHSA-fp9p-ww3j-hpfw: SBC codec crash in Wireshark 4
ghsa_unreviewed·2026-05-01
CVE-2026-5403 [HIGH] CWE-122 GHSA-fp9p-ww3j-hpfw: SBC codec crash in Wireshark 4
SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Red Hat
wireshark: Heap-based Buffer Overflow in Wireshark
vendor_redhat·2026-04-30·CVSS 7.8
CVE-2026-5403 [HIGH] CWE-122 wireshark: Heap-based Buffer Overflow in Wireshark
wireshark: Heap-based Buffer Overflow in Wireshark
A flaw was found in the SBC audio codec in Wireshark. This issue occurs when malformed packets are decoded from a pcap file or the network, causing a heap-based buffer overflow, resulting in a denial of service or potentially in code execution.
Statement: This issue will cause a crash in Wireshark and potentially result in code execution. This flaw can only be exploited when a malformed pcap file is processed. Due to these reasons, this vulnerability has been rated with an important severity.
Mitigation: If the SBC audio codec dissector is not being used, it can be disabled via the "Enabled Protocols" dialog box in the Wireshark GUI application. This will also disable the protocol dissector when using "tshark", the command line tool.
Se
GitLab
Heap-based Buffer Overflow in Wireshark
vendor_gitlab·2026-04-30·CVSS 7.8
CVE-2026-5403 [HIGH] CWE-122 Heap-based Buffer Overflow in Wireshark
Heap-based Buffer Overflow in Wireshark
SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Affected products: Wireshark
Affected versions: >=4.6.0, =4.4.0, <4.4.15 (affected)
Solution: Upgrade to version 4.6.5 or above
Credit: Duc Anh Nguyen
No detection rules found.
No public exploits indexed.
Hackernews
⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & More
blogs_hackernews·2026-05-04·CVSS 9.3
CVE-2026-41940 [CRITICAL] ⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & More
Home
Threat Intelligence
Vulnerabilities
Cyber Attacks
Webinars
Expert Insights
Awards
Webinars
Awards
Free eBooks
About THN
Jobs
Advertise with us
## ⚡ Weekly Recap: AI-Powered Phishing, Android Spying Tool, Linux Exploit, GitHub RCE & More
This week, the shadows moved faster than the patches.
While most teams were still triaging last month’s alerts, attackers had already turned control panels into kill switches, kernels into open doors, and open-source pipelines into silent delivery systems.
The game has shifted from breach to occupation. They’re living inside SaaS sessions, pushing code with trusted commits, and scaling operations like legitimate businesses — except their product is chaos. And the underground is getting uncomfortably professional.
Here’s the full week
Bugzilla
CVE-2026-5403 wireshark: Heap-based Buffer Overflow in Wireshark [fedora-all]
bugzilla·2026-05-04·CVSS 7.8
CVE-2026-5403 [HIGH] CVE-2026-5403 wireshark: Heap-based Buffer Overflow in Wireshark [fedora-all]
CVE-2026-5403 wireshark: Heap-based Buffer Overflow in Wireshark [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-5403 wireshark: Heap-based Buffer Overflow in Wireshark
bugzilla·2026-05-01·CVSS 7.8
CVE-2026-5403 [HIGH] CVE-2026-5403 wireshark: Heap-based Buffer Overflow in Wireshark
CVE-2026-5403 wireshark: Heap-based Buffer Overflow in Wireshark
SBC codec crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
2026-05-01
Published