CVE-2026-5406
published 2026-04-30CVE-2026-5406: FC-SWILS protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
PriorityP418medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.18%
7.4th percentile
FC-SWILS protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | 4.4.0 – 4.4.14 | — |
| wireshark | wireshark | 4.6.0 – 4.6.4 | — |
| wireshark_foundation | wireshark | >= 4.4.0 < 4.4.15 | 4.4.15 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.5 | 4.6.5 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GitLab
Uncontrolled Recursion in Wireshark
vendor_gitlab·2026-04-30·CVSS 5.5
CVE-2026-5406 [MEDIUM] CWE-674 Uncontrolled Recursion in Wireshark
Uncontrolled Recursion in Wireshark
FC-SWILS protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Affected products: Wireshark
Affected versions: >=4.6.0, =4.4.0, <4.4.15 (affected)
Solution: Upgrade to version 4.6.5 or above
Credit: Brendan Coles
Red Hat
wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash
vendor_redhat·2026-04-30·CVSS 5.5
CVE-2026-5406 [MEDIUM] CWE-1286 wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash
wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash
A flaw was found in Wireshark. A remote attacker could exploit this vulnerability by crafting and sending malicious FC-SWILS protocol data. This would cause the FC-SWILS protocol dissector to crash, leading to a denial of service (DoS) for the affected system.
Mitigation: To mitigate this issue, avoid opening untrusted capture files or analyzing untrusted live network traffic with Wireshark. Running Wireshark in a sandboxed environment, such as a container or virtual machine, can further limit the impact of processing malicious data.
Package: wireshark (Red Hat Enterprise Linux 10) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 6) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 7) -
VulDB
Wireshark up to 4.4.14/4.6.4 FC-SWILS Protocol Dissector recursion (ID 21070 / EUVD-2026-26319)
vuldb·2026-05-01·CVSS 5.5
CVE-2026-5406 [MEDIUM] Wireshark up to 4.4.14/4.6.4 FC-SWILS Protocol Dissector recursion (ID 21070 / EUVD-2026-26319)
A vulnerability was found in Wireshark up to 4.4.14/4.6.4 and classified as problematic. This affects an unknown part of the component FC-SWILS Protocol Dissector. The manipulation results in uncontrolled recursion.
This vulnerability is reported as CVE-2026-5406. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.
GHSA
GHSA-m79q-hhmw-w23c: FC-SWILS protocol dissector crash in Wireshark 4
ghsa_unreviewed·2026-04-30
CVE-2026-5406 [MEDIUM] CWE-674 GHSA-m79q-hhmw-w23c: FC-SWILS protocol dissector crash in Wireshark 4
FC-SWILS protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-5406 wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash [fedora-all]
bugzilla·2026-05-04·CVSS 5.5
CVE-2026-5406 [MEDIUM] CVE-2026-5406 wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash [fedora-all]
CVE-2026-5406 wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-5406 wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash
bugzilla·2026-04-30·CVSS 5.5
CVE-2026-5406 [MEDIUM] CVE-2026-5406 wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash
CVE-2026-5406 wireshark: Wireshark: Denial of Service via FC-SWILS protocol dissector crash
FC-SWILS protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
2026-04-30
Published