Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
Advisories
No advisories yet.
Fixes
Solution
Upgrade to version 4.6.5 or above
Workaround
No workaround given by the vendor.
References
History
Fri, 01 May 2026 00:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Wireshark
Wireshark wireshark |
|
| Vendors & Products |
Wireshark
Wireshark wireshark |
Thu, 30 Apr 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Profile import path traversal in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution | |
| Title | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Wireshark | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitLab
Published:
Updated: 2026-04-30T23:03:58.516Z
Reserved: 2026-04-06T06:34:06.344Z
Link: CVE-2026-5656
No data.
Status : Received
Published: 2026-05-01T00:16:25.097
Modified: 2026-05-01T00:16:25.097
Link: CVE-2026-5656
No data.
OpenCVE Enrichment
Updated: 2026-05-01T00:30:04Z
Weaknesses