CVE-2026-6533
published 2026-04-30CVE-2026-6533: Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
PriorityP418medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.15%
4.3th percentile
Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | 4.4.0 – 4.4.14 | — |
| wireshark | wireshark | 4.6.0 – 4.6.4 | — |
| wireshark_foundation | wireshark | >= 4.4.9 < 4.4.15 | 4.4.15 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.5 | 4.6.5 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GitLab
Improperly Controlled Sequential Memory Allocation in Wireshark
vendor_gitlab·2026-04-30·CVSS 5.5
CVE-2026-6533 [MEDIUM] CWE-1325 Improperly Controlled Sequential Memory Allocation in Wireshark
Improperly Controlled Sequential Memory Allocation in Wireshark
Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Affected products: Wireshark
Affected versions: >=4.6.0, =4.4.9, <4.4.15 (affected)
Solution: Upgrade to version 4.6.5 or above
Credit: Sharon Brizinov
Red Hat
Wireshark: Wireshark: Denial of service via LZ77 decompression crash
vendor_redhat·2026-04-30·CVSS 5.5
CVE-2026-6533 [MEDIUM] CWE-409 Wireshark: Wireshark: Denial of service via LZ77 decompression crash
Wireshark: Wireshark: Denial of service via LZ77 decompression crash
A flaw was found in Wireshark. A remote attacker could exploit a dissection engine LZ77 decompression crash by crafting a malicious packet. This vulnerability leads to a Denial of Service (DoS) condition, making the application unavailable.
Mitigation: To mitigate this issue, users should avoid opening untrusted or suspicious packet capture files with Wireshark. Running Wireshark in a sandboxed environment can further limit the potential impact of processing malicious data.
Package: wireshark (Red Hat Enterprise Linux 10) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 6) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 7) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 8) - Fix de
VulDB
Wireshark up to 4.4.14/4.6.4 LZ77 Decompression improperly controlled sequential memory allocation (ID 21127 / WID-SEC-2026-1311)
vuldb·2026-05-01·CVSS 5.5
CVE-2026-6533 [MEDIUM] Wireshark up to 4.4.14/4.6.4 LZ77 Decompression improperly controlled sequential memory allocation (ID 21127 / WID-SEC-2026-1311)
A vulnerability has been found in Wireshark up to 4.4.14/4.6.4 and classified as problematic. The impacted element is an unknown function of the component LZ77 Decompression Handler. Performing a manipulation results in improperly controlled sequential memory allocation.
This vulnerability is cataloged as CVE-2026-6533. It is possible to initiate the attack remotely. There is no exploit available.
The affected component should be upgraded.
GHSA
GHSA-q3p3-3qhr-3586: Dissection engine LZ77 decompression crash in Wireshark 4
ghsa_unreviewed·2026-04-30
CVE-2026-6533 [MEDIUM] CWE-1325 GHSA-q3p3-3qhr-3586: Dissection engine LZ77 decompression crash in Wireshark 4
Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-6533 wireshark: Wireshark: Denial of service via LZ77 decompression crash [fedora-all]
bugzilla·2026-05-04·CVSS 5.5
CVE-2026-6533 [MEDIUM] CVE-2026-6533 wireshark: Wireshark: Denial of service via LZ77 decompression crash [fedora-all]
CVE-2026-6533 wireshark: Wireshark: Denial of service via LZ77 decompression crash [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6533 Wireshark: Wireshark: Denial of service via LZ77 decompression crash
bugzilla·2026-04-30·CVSS 5.5
CVE-2026-6533 [MEDIUM] CVE-2026-6533 Wireshark: Wireshark: Denial of service via LZ77 decompression crash
CVE-2026-6533 Wireshark: Wireshark: Denial of service via LZ77 decompression crash
Dissection engine LZ77 decompression crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
2026-04-30
Published