Home
HIGH: 7.0 CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
4.6.0 (semver) before 4.6.5
affected
4.4.0 (semver) before 4.4.15
affected
Description
Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Problem types
CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
Product status
4.6.0 (semver) before 4.6.5
4.4.0 (semver) before 4.4.15
Credits
TODO
References
www.wireshark.org/security/wnpa-sec-2026-21.html
gitlab.com/wireshark/wireshark/-/issues/21115 (GitLab Issue #21115)