Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
4.6.0 (semver) before 4.6.5
affected
4.4.0 (semver) before 4.4.15
affected
Description
RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Problem types
CWE-122: Heap-based Buffer Overflow
Product status
4.6.0 (semver) before 4.6.5
4.4.0 (semver) before 4.4.15
Credits
Duc Anh Nguyen
References
www.wireshark.org/security/wnpa-sec-2026-17.html
gitlab.com/wireshark/wireshark/-/issues/21105 (GitLab Issue #21105)