CVE-2026-6867
published 2026-04-30CVE-2026-6867: SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
PriorityP418medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.12%
2.5th percentile
SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gitlab | wireshark | — | — |
| wireshark | wireshark | — | — |
| wireshark | wireshark | 4.4.0 – 4.4.14 | — |
| wireshark | wireshark | 4.6.0 – 4.6.4 | — |
| wireshark_foundation | wireshark | >= 4.4.0 < 4.4.15 | 4.4.15 |
| wireshark_foundation | wireshark | >= 4.6.0 < 4.6.5 | 4.6.5 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-r6mg-v3f6-8v7r: SMB2 protocol dissector crash in Wireshark 4
ghsa_unreviewed·2026-04-30
CVE-2026-6867 [MEDIUM] CWE-1325 GHSA-r6mg-v3f6-8v7r: SMB2 protocol dissector crash in Wireshark 4
SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Red Hat
wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash
vendor_redhat·2026-04-30·CVSS 5.5
CVE-2026-6867 [MEDIUM] CWE-1286 wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash
wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash
A flaw was found in Wireshark. A remote attacker could exploit a vulnerability in the SMB2 protocol dissector by sending a specially crafted packet. This could lead to a crash of the Wireshark application, resulting in a denial of service (DoS) for the user.
Mitigation: To mitigate this issue, users should avoid opening or analyzing network capture files from untrusted sources. Additionally, when capturing live traffic, ensure the network environment is controlled and trusted to prevent exposure to malicious packets.
Package: wireshark (Red Hat Enterprise Linux 10) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 6) - Fix deferred
Package: wireshark (Red Hat Enterprise Linux 7) - Fix deferred
Package
GitLab
Improperly Controlled Sequential Memory Allocation in Wireshark
vendor_gitlab·2026-04-30·CVSS 5.5
CVE-2026-6867 [MEDIUM] CWE-1325 Improperly Controlled Sequential Memory Allocation in Wireshark
Improperly Controlled Sequential Memory Allocation in Wireshark
SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
Affected products: Wireshark
Affected versions: >=4.6.0, =4.4.0, <4.4.15 (affected)
Solution: Upgrade to version 4.6.5 or above
Credit: TODO
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2026-6867 wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash [fedora-all]
bugzilla·2026-05-04·CVSS 5.5
CVE-2026-6867 [MEDIUM] CVE-2026-6867 wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash [fedora-all]
CVE-2026-6867 wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Bugzilla
CVE-2026-6867 wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash
bugzilla·2026-04-30·CVSS 5.5
CVE-2026-6867 [MEDIUM] CVE-2026-6867 wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash
CVE-2026-6867 wireshark: Wireshark: Denial of service via SMB2 protocol dissector crash
SMB2 protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service
2026-04-30
Published